phpgb records
3 published records for vendor phpgb.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2002-1482Proof of concept | SQL injection vulnerability in login.php for phpGB 1.20 and earlier, when magic_quotes_gpc is not enabled, allows remote attackers to gain aphpgb · phpgb | Critical10.0 | — | 3.7% | Apr 22, 2003 |
32Monitor | CVE-2002-1481Proof of concept | savesettings.php in phpGB 1.20 and earlier does not require authentication, which allows remote attackers to cause a denial of service or exphpgb · phpgb | High7.5 | — | 7.2% | Apr 22, 2003 |
28Monitor | CVE-2002-1480Proof of concept | Cross-site scripting (XSS) vulnerability in phpGB before 1.20 allows remote attackers to inject arbitrary HTML or script into guestbook pagephpgb · phpgb | Medium6.8 | — | 4.3% | Apr 22, 2003 |
- CVE-2002-148241Plan
SQL injection vulnerability in login.php for phpGB 1.20 and earlier, when magic_quotes_gpc is not enabled, allows remote attackers to gain a
CriticalCVSS 10.0Proof of conceptEPSS 4%phpgb · phpgbApr 22, 2003
- CVE-2002-148132Monitor
savesettings.php in phpGB 1.20 and earlier does not require authentication, which allows remote attackers to cause a denial of service or ex
HighCVSS 7.5Proof of conceptEPSS 7%phpgb · phpgbApr 22, 2003
- CVE-2002-148028Monitor
Cross-site scripting (XSS) vulnerability in phpGB before 1.20 allows remote attackers to inject arbitrary HTML or script into guestbook page
MediumCVSS 6.8Proof of conceptEPSS 4%phpgb · phpgbApr 22, 2003