İçeriğe atla
Noroxi

phpbb group kayıtları

phpbb group üreticisine ait 93 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
2 · %2,2
Pre-auth RCE
28
Düzeltme kaydı olan
%17,2
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

93 kayıt
  • CVE-2005-2086
    56Planlayın

    PHP remote file inclusion vulnerability in viewtopic.php in phpBB 2.0.15 and earlier allows remote attackers to execute arbitrary PHP code.

    YüksekCVSS 7,5SilahlaştırılmışEPSS %85

    phpbb group · phpbb5 Tem 2005

  • CVE-2004-1315
    52Planlayın

    viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, whic

    YüksekCVSS 7,5SilahlaştırılmışEPSS %72

    phpbb group · phpbb12 Kas 2004

  • CVE-2002-0473
    42Planlayın

    db.php in phpBB 2.0 (aka phpBB2) RC-3 and earlier allows remote attackers to execute arbitrary code from remote servers via the phpbb_root_p

    KritikCVSS 10,0İstismar yokEPSS %5

    phpbb group · phpbb12 Ağu 2002

  • CVE-2002-2176
    41Planlayın

    SQL injection vulnerability in Gender MOD 1.1.3 allows remote attackers to gain administrative access via the user_level parameter in the Us

    KritikCVSS 10,0Kavram kanıtıEPSS %3

    phpbb group · phpbb31 Ara 2002

  • CVE-2002-1537
    41Planlayın

    admin_ug_auth.php in phpBB 2.0.0 allows local users to gain administrator privileges by directly calling admin_ug_auth.php with modifed form

    KritikCVSS 10,0İstismar yokEPSS %2

    phpbb group · phpbb31 Mar 2003

  • CVE-2007-1695
    41Planlayın

    PHP remote file inclusion vulnerability in includes/usercp_register.php in phpBB 2.0.19 allows remote attackers to execute arbitrary PHP cod

    KritikCVSS 10,0İstismar yokEPSS %2

    phpbb group · phpbb26 Mar 2007

  • CVE-2006-6840
    40Planlayın

    Unspecified vulnerability in phpBB before 2.0.22 has unknown impact and remote attack vectors related to a "negative start parameter."

    KritikCVSS 10,0İstismar yokEPSS %2

    phpbb group · phpbb31 Ara 2006

  • CVE-2006-6839
    40Planlayın

    Unspecified vulnerability in phpBB before 2.0.22 has unknown impact and remote attack vectors related to "criteria for 'bad' redirection tar

    KritikCVSS 10,0İstismar yokEPSS %2

    phpbb group · phpbb31 Ara 2006

  • CVE-2006-6841
    40Planlayın

    Certain forms in phpBB before 2.0.22 lack session checks, which has unknown impact and remote attack vectors.

    KritikCVSS 10,0İstismar yokEPSS %2

    phpbb group · phpbb31 Ara 2006

  • CVE-2005-1193
    35İzleyin

    The bbencode_second_pass and make_clickable functions in bbcode.php for phpBB before 2.0.15, as used in viewtopic.php, privmsg.php, and othe

    YüksekCVSS 7,5Kavram kanıtıEPSS %16

    phpbb group · phpbb16 May 2005

  • CVE-2006-2151
    33İzleyin

    PHP remote file inclusion vulnerability in toplist.php in phpBB TopList 1.3.8 and earlier, when register_globals is enabled, allows remote a

    YüksekCVSS 7,5Kavram kanıtıEPSS %11

    phpbb group · phpbb toplist3 May 2006

  • CVE-2006-2152
    33İzleyin

    PHP remote file inclusion vulnerability in admin/addentry.php in phpBB Advanced Guestbook 2.4.0 and earlier, when register_globals is enable

    YüksekCVSS 7,5Kavram kanıtıEPSS %8

    phpbb group · phpbb advanced guestbook3 May 2006

  • CVE-2005-0614
    32İzleyin

    sessions.php in phpBB 2.0.12 and earlier allows remote attackers to gain administrator privileges via the autologinid value in a cookie.

    YüksekCVSS 7,5Kavram kanıtıEPSS %8

    phpbb group · phpbb2 May 2005

  • CVE-2002-0902
    32İzleyin

    Cross-site scripting vulnerability in phpBB 2.0.0 (phpBB2) allows remote attackers to execute Javascript as other phpBB users by including a

    YüksekCVSS 7,5Kavram kanıtıEPSS %7

    phpbb group · phpbb4 Eki 2002

  • CVE-2004-1535
    32İzleyin

    PHP remote file inclusion vulnerability in admin_cash.php for the Cash Mod module for phpBB allows remote attackers to execute arbitrary PHP

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    phpbb group · phpbb31 Ara 2004

  • CVE-2006-4779
    31İzleyin

    PHP remote file inclusion vulnerability in includes/functions_portal.php in Vitrax Premodded phpBB 1.0.6-R3 and earlier allows remote attack

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    phpbb group · vitrax premodded phpbb14 Eyl 2006

  • CVE-2006-2865
    31İzleyin

    PHP remote file inclusion vulnerability in template.php in phpBB 2 allows remote attackers to execute arbitrary PHP code via a URL in the pa

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    phpbb group · phpbb6 Haz 2006

  • CVE-2004-1943
    31İzleyin

    PHP remote file inclusion vulnerability in album_portal.php in phpBB modified by Przemo 1.8 allows remote attackers to execute arbitrary PHP

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    phpbb group · phpbb19 Nis 2004

  • CVE-2005-3415
    31İzleyin

    phpBB 2.0.17 and earlier allows remote attackers to bypass protection mechanisms that deregister global variables by setting both a GET/POST

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpbb group · phpbb1 Kas 2005

  • CVE-2005-3420
    31İzleyin

    usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpbb group · phpbb1 Kas 2005

  • CVE-2005-3417
    31İzleyin

    phpBB 2.0.17 and earlier, when the register_long_arrays directive is disabled, allows remote attackers to modify global variables and bypass

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpbb group · phpbb1 Kas 2005

  • CVE-2005-3416
    31İzleyin

    phpBB 2.0.17 and earlier, when register_globals is enabled and the session_start function has not been called to handle a session, allows re

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpbb group · phpbb1 Kas 2005

  • CVE-2006-5209
    31İzleyin

    PHP remote file inclusion vulnerability in admin/admin_topic_action_logging.php in Admin Topic Action Logging Mod 0.95 and earlier, as used

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb group · phpbb10 Eki 2006

  • CVE-2005-1047
    31İzleyin

    Meilad File upload script (up.php) mod for phpBB 2.0.x does not properly limit the types of files that can be uploaded, which allows remote

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpbb group · phpbb7 Nis 2005

  • CVE-2005-1196
    31İzleyin

    SQL injection vulnerability in kb.php in the Knowledge Base module for phpBB allows remote attackers to obtain sensitive information and exe

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb group · phpbb2 May 2005