← Vulnerability feed

Vulnerability record · CVE-2004-1968 · published 26 April 2004

CVE-2004-1968: Openbb vulnerability

Openbb · Openbb

The readmsg action in myhome.php in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to read arbitrary messages by modifying the id parameter.

5.0 CVSS 2.0 Medium EPSS 2.9% · top 13.4%
5.0CVSS 2.0 base score
2.9%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
10References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

The readmsg action in myhome.php in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to read arbitrary messages by modifying the id parameter.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2004-1968 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2004-1967Openbb cross-site request forgery vulnerabilityCross-site request forgery (CSRF) vulnerabilities in (1) cp_forums.php, (2) cp_usergroup.php, (3) cp_ipbans.php, (4) myhome.php, (5) post.php, or (6)…EPSS 1.6%7.5CVE-2006-4722Openbb vulnerabilityPHP remote file inclusion vulnerability in Open Bulletin Board (OpenBB) 1.0.8 and earlier allows remote attackers to execute arbitrary PHP code via a…EPSS 2.8%7.5CVE-2005-2566Openbb vulnerabilityMultiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) allow remote attackers to execute arbitrary SQL commands via the (1) FID param…EPSS 1.1%7.5CVE-2005-1612Openbb vulnerabilitySQL injection vulnerability in read.php in Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to execute arbitrary SQL commands via the TID p…EPSS 2.2%7.5CVE-2004-1966Openbb vulnerabilityMultiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execute arbitrary SQL commands via…EPSS 1.3%7.5CVE-2002-0330Openbb vulnerabilityCross-site scripting vulnerability in codeparse.php of Open Bulletin Board (OpenBB) 1.0.0 allows remote attackers to execute arbitrary script and ste…EPSS 7.9%6.8CVE-2005-1613Openbb vulnerabilityCross-site scripting (XSS) vulnerability in member.php in Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to inject arbitrary web script o…EPSS 3.7%5.0CVE-2002-1830Openbb vulnerabilityOpen Bulletin Board (OpenBB) 1.0.0 RC3 allows remote attackers to bypass authentication and access modifier options via a direct request to moderator…EPSS 7.1%

Source: NIST National Vulnerability Database (record CVE-2004-1968), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.