Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
phpbb group vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2004-0729
PhpBB 2.0.8 allows remote malicious users to gain sensitive information via an invalid (1) category_rows parameter to index.php, (2) faq parameter to faq.php, or (3) ranksrow parameter to profile.php, which reveal the full path in an error message.
Phpbb Group Phpbb 2.0.8
Phpbb Group Phpbb 2.0.8a
NA
CVE-2002-2176
SQL injection vulnerability in Gender MOD 1.1.3 allows remote malicious users to gain administrative access via the user_level parameter in the User Profile page.
Phpbb Group Phpbb 2.0.0
Phpbb Group Phpbb 2.0.1
1 EDB exploit
NA
CVE-2001-1472
SQL injection vulnerability in prefs.php in phpBB 1.4.0 and 1.4.1 allows remote authenticated users to execute arbitrary SQL commands and gain administrative access via the viewemail parameter.
Phpbb Group Phpbb 1.4.0
Phpbb Group Phpbb 1.4.1
1 EDB exploit
NA
CVE-2004-0730
Multiple cross-site scripting (XSS) vulnerabilities in PhpBB 2.0.8 allow remote malicious users to inject arbitrary web script or HTML via (1) the cat_title parameter in index.php, (2) the faq[0][0] parameter in lang_faq.php as accessible from faq.php, or (3) the faq[0][0] parame...
Phpbb Group Phpbb 2.0.8
Phpbb Group Phpbb 2.0.8a
NA
CVE-2005-1234
Multiple SQL injection vulnerabilities in phpbb-Auction allow remote malicious users to execute arbitrary SQL commands via the (1) u parameter to auction_rating.php or (2) ar parameter to action_offer.php.
Phpbb Group Phpbb-auction 1.0m
Phpbb Group Phpbb-auction 1.2m
NA
CVE-2005-1235
auction_my_auctions.php in phpbb-Auction 1.2m and previous versions allows remote malicious users to obtain sensitive information via an invalid mode parameter, which leaks the full path in a PHP error message.
Phpbb Group Phpbb-auction 1.0m
Phpbb Group Phpbb-auction 1.2m
NA
CVE-2006-2359
Cross-site scripting (XSS) vulnerability in charts.php in the Chart mod for phpBB allows remote malicious users to inject arbitrary web script or HTML via the id parameter. NOTE: this issue might be resultant from SQL injection.
Phpbb Group Phpbb
1 EDB exploit
NA
CVE-2006-2360
SQL injection vulnerability in charts.php in the Chart mod for phpBB allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Phpbb Group Phpbb
1 EDB exploit
NA
CVE-2003-0484
Cross-site scripting (XSS) vulnerability in viewtopic.php for phpBB allows remote malicious users to insert arbitrary web script via the topic_id parameter.
Phpbb Group Phpbb
NA
CVE-2003-0486
SQL injection vulnerability in viewtopic.php for phpBB 2.0.5 and previous versions allows remote malicious users to steal password hashes via the topic_id parameter.
Phpbb Group Phpbb
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »