cve/2007/CVE-2007-2626.md
2024-06-18 02:51:15 +02:00

756 B

CVE-2007-2626

Description

** DISPUTED ** SQL injection vulnerability in admin.php in SchoolBoard allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. NOTE: CVE disputes this issue, because 'username' does not exist, and the password is not used in any queries.

POC

Reference

Github

No PoCs found on GitHub currently.