5
CVSSv2

CVE-2000-1234

Published: 31/12/2000 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

violation.php3 in Phorum 3.0.7 allows remote malicious users to send e-mails to arbitrary addresses and possibly use Phorum as a "spam proxy" by setting the Mod and ForumName parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

phorum phorum 3.0.7

Exploits

source: wwwsecurityfocuscom/bid/2272/info Phorum is a freely available, open source package originally written by Brian Moon The package is designed to add enhanced features to a web page, allowing users to interact through bulletin board style chats forums and discussions A problem with the Phorum package could allow remote users to a ...

Github Repositories

gsd-data-enrichment

gsd-data-enrichment gsd-data-enrichment After some experimentation I've decided: Shell scripts, they work, it's easy to follow what is going on We'll also refactor this in Python 3 long term so we can support URL's with commas for example (a known problem right now) Updating CVE/URL data Create a CSV file of CVE ID and a URL to add, eg: CVE-2000-1234,ht