Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
punbb punbb 1.2.11 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-2724
Cross-site scripting (XSS) vulnerability in PunBB 1.2.11 allows remote authenticated administrators to inject arbitrary HTML or web script to other administrators via the "Admin note" feature, a different vulnerability than CVE-2006-2227.
Punbb Punbb 1.2.11
NA
CVE-2006-2227
Cross-site scripting (XSS) vulnerability in misc.php in PunBB 1.2.11 allows remote malicious users to inject arbitrary web script or HTML via the req_message parameter, because the value of the redirect_url parameter is not sanitized.
Punbb Punbb 1.2.11
NA
CVE-2008-3968
Cross-site scripting (XSS) vulnerability in userlist.php in PunBB prior to 1.2.20 allows remote malicious users to inject arbitrary web script or HTML via the p parameter.
Punbb Punbb 1.0
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.1
Punbb Punbb 1.2.13
Punbb Punbb 1.1.1
Punbb Punbb 1.2.15
Punbb Punbb
Punbb Punbb 1.1.3
Punbb Punbb 1.2.11
Punbb Punbb 1.2.16
Punbb Punbb 1.1.4
Punbb Punbb 1.1.2
NA
CVE-2008-7241
Cross-site request forgery (CSRF) vulnerability in PunBB prior to 1.2.17 allows remote malicious users to hijack the authentication of unspecified users for requests related to a logout, probably a forced logout.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.2.5
Punbb Punbb 1.2.10
Punbb Punbb 1.0
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb
Punbb Punbb 1.1
Punbb Punbb 1.2.14
Punbb Punbb 1.2.13
Punbb Punbb 1.1.1
Punbb Punbb 1.2.15
Punbb Punbb 1.2.12
Punbb Punbb 1.1.3
Punbb Punbb 1.2.4
Punbb Punbb 1.2.11
Punbb Punbb 1.2.8
Punbb Punbb 1.2.2
Punbb Punbb 1.2
Punbb Punbb 1.1.4
Punbb Punbb 1.2.6
NA
CVE-2008-3335
Unspecified vulnerability in PunBB prior to 1.2.19 allows remote malicious users to inject arbitrary SMTP commands via unknown vectors.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.2.5
Punbb Punbb 1.0
Punbb Punbb 1.2.10
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.1
Punbb Punbb 1.2.14
Punbb Punbb 1.2.13
Punbb Punbb 1.0.1
Punbb Punbb 1.1.1
Punbb Punbb 1.2.15
Punbb Punbb 1.2.12
Punbb Punbb 1.1.3
Punbb Punbb 1.2.17
Punbb Punbb 1.2.4
Punbb Punbb 1.2.11
Punbb Punbb
Punbb Punbb 1.2.8
Punbb Punbb 1.2.2
Punbb Punbb 1.2
NA
CVE-2008-3336
Multiple cross-site scripting (XSS) vulnerabilities in PunBB prior to 1.2.19 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors in (1) include/parser.php and (2) moderate.php.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.2.5
Punbb Punbb 1.0
Punbb Punbb 1.2.10
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.1
Punbb Punbb 1.2.14
Punbb Punbb 1.2.13
Punbb Punbb 1.0.1
Punbb Punbb 1.1.1
Punbb Punbb 1.2.15
Punbb Punbb 1.2.12
Punbb Punbb 1.1.3
Punbb Punbb 1.2.17
Punbb Punbb 1.2.4
Punbb Punbb 1.2.11
Punbb Punbb
Punbb Punbb 1.2.8
Punbb Punbb 1.2.2
Punbb Punbb 1.2
NA
CVE-2008-5435
Cross-site scripting (XSS) vulnerability in moderate.php in PunBB prior to 1.3.1 allows remote malicious users to inject arbitrary web script or HTML via a topic subject.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.2.5
Punbb Punbb 1.0
Punbb Punbb 1.2.10
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.3
Punbb Punbb 1.1
Punbb Punbb 1.2.21
Punbb Punbb 1.2.14
Punbb Punbb 1.2.13
Punbb Punbb 1.0.1
Punbb Punbb 1.1.1
Punbb Punbb 1.2.20
Punbb Punbb 1.2.15
Punbb Punbb 1.2.12
Punbb Punbb 1.1.3
Punbb Punbb 1.2.17
Punbb Punbb 1.2.4
Punbb Punbb 1.2.11
Punbb Punbb
NA
CVE-2006-5736
SQL injection vulnerability in search.php in PunBB prior to 1.2.14, when the PHP installation is vulnerable to CVE-2006-3017, allows remote malicious users to execute arbitrary SQL commands via the result_list array parameter, which is not initialized.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.0 Beta2
Punbb Punbb 1.2.5
Punbb Punbb 1.2.10
Punbb Punbb 1.0
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.1
Punbb Punbb 1.0.1
Punbb Punbb 1.1.1
Punbb Punbb 1.0 Beta3
Punbb Punbb 1.2.12
Punbb Punbb 1.0 Rc1
Punbb Punbb 1.1.3
Punbb Punbb
Punbb Punbb 1.0 Rc2
Punbb Punbb 1.0 Beta1a
Punbb Punbb 1.0 Beta1
Punbb Punbb 1.2.4
Punbb Punbb 1.2.11
Punbb Punbb 1.2.8
NA
CVE-2006-5738
Multiple SQL injection vulnerabilities in PunBB prior to 1.2.14 allow remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.0 Beta2
Punbb Punbb 1.2.5
Punbb Punbb 1.2.10
Punbb Punbb 1.0
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.1
Punbb Punbb 1.0.1
Punbb Punbb 1.1.1
Punbb Punbb 1.0 Beta3
Punbb Punbb 1.2.12
Punbb Punbb 1.0 Rc1
Punbb Punbb 1.1.3
Punbb Punbb
Punbb Punbb 1.0 Rc2
Punbb Punbb 1.0 Beta1a
Punbb Punbb 1.0 Beta1
Punbb Punbb 1.2.4
Punbb Punbb 1.2.11
Punbb Punbb 1.2.8
NA
CVE-2009-4894
Multiple cross-site scripting (XSS) vulnerabilities in profile.php in PunBB prior to 1.3.4 allow remote malicious users to inject arbitrary web script or HTML via the (1) password or (2) e-mail.
Punbb Punbb 1.2.3
Punbb Punbb 1.2.7
Punbb Punbb 1.2.5
Punbb Punbb 1.0
Punbb Punbb 1.3.1
Punbb Punbb 1.2.10
Punbb Punbb 1.2.1
Punbb Punbb 1.1.5
Punbb Punbb 1.3.2
Punbb Punbb 1.1
Punbb Punbb 1.2.21
Punbb Punbb 1.2.14
Punbb Punbb 1.2.13
Punbb Punbb 1.3
Punbb Punbb 1.0.1
Punbb Punbb 1.1.1
Punbb Punbb 1.2.20
Punbb Punbb 1.2.15
Punbb Punbb 1.2.12
Punbb Punbb
Punbb Punbb 1.1.3
Punbb Punbb 1.2.17
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-37316
firmware
CVE-2024-30078
CVE-2024-5995
remote code execution
logic flaw
CVE-2024-20693
CVE-2024-37315
CVE-2024-5464
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »