ekinboard CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

ekinboard vulnerability overview

Aggregates CVE and security vulnerability intelligence across all ekinboard-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk sql injection and related security problems, affecting vendor surface software deployment and vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2008-7157 Unrestricted file upload vulnerability in EkinBoard 1.1.0 and earlier allows remote attackers to execute arbitrary code by uploading an avatar file with an executable extension followed by a safe extension, then accessing it via a direct request to the file in uploaded/avatars/. [email protected] 6.8 2.67% 2009-09-02 2026-04-23
CVE-2008-7156 EkinBoard 1.1.0 and earlier, when register_globals is enabled, allows remote attackers to bypass authorization and gain administrator privileges by setting the _groups[] parameter to 2, as demonstrated via backup.php. [email protected] 6.8 0.93% 2009-09-02 2026-04-23
CVE-2006-1130 Cross-site scripting (XSS) vulnerability in EKINboard 1.0.3 allows remote attackers to inject arbitrary web script or HTML via a Javascript URI in a BBCode img tag. [email protected] 4.3 1.16% 2006-03-10 2026-04-16
CVE-2006-1129 SQL injection vulnerability in config.php in EKINboard 1.0.3 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username cookie. [email protected] 7.5 3.77% 2006-03-10 2026-04-16
CVE-2005-3638 Cross-site scripting (XSS) vulnerabilities in Ekinboard 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in profile.php and (2) titles of posts. [email protected] 4.3 0.76% 2005-11-16 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence