Skip to content
Noroxi

phpgb records

3 published records for vendor phpgb.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      3 records
      • SQL injection vulnerability in login.php for phpGB 1.20 and earlier, when magic_quotes_gpc is not enabled, allows remote attackers to gain a

        CriticalCVSS 10.0Proof of conceptEPSS 4%

        phpgb · phpgbApr 22, 2003

      • CVE-2002-1481
        32Monitor

        savesettings.php in phpGB 1.20 and earlier does not require authentication, which allows remote attackers to cause a denial of service or ex

        HighCVSS 7.5Proof of conceptEPSS 7%

        phpgb · phpgbApr 22, 2003

      • CVE-2002-1480
        28Monitor

        Cross-site scripting (XSS) vulnerability in phpGB before 1.20 allows remote attackers to inject arbitrary HTML or script into guestbook page

        MediumCVSS 6.8Proof of conceptEPSS 4%

        phpgb · phpgbApr 22, 2003