Total vulnerabilities in the database
Ultimate PHP Board (UPB) 1.9 allows remote attackers to execute arbitrary PHP code with UPB administrator privileges via an HTTP request containing the code in the User-Agent header, which is executed when the administrator executes admin_iplog.php.
Software | From | Fixed in |
---|---|---|
myupb / ultimate_php_board | 1.9 | 1.9.x |