İçeriğe atla
Noroxi

phpbb kayıtları

phpbb üreticisine ait 67 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
34
Düzeltme kaydı olan
%25,4
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Bug bounty kapsamı

Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.

Tüm kayıtlar

67 kayıt
  • CVE-2006-7148
    41Planlayın

    PHP remote file inclusion vulnerability in includes/bb_usage_stats.php in maluinfo 206.2.38 for Brazilian PHPBB allows remote attackers to e

    KritikCVSS 10,0Kavram kanıtıEPSS %3

    phpbb · maluinfo7 Mar 2007

  • CVE-2006-7174
    41Planlayın

    PHP remote file inclusion vulnerability in includes/functions.php in the Dimension module of phpBB allows remote attackers to execute arbitr

    KritikCVSS 10,0İstismar yokEPSS %2

    phpbb · dimension21 Mar 2007

  • CVE-2008-1766
    40Planlayın

    Multiple unspecified vulnerabilities in phpBB before 3.0.1 have unknown impact and attack vectors, related to "two minor security-related bu

    KritikCVSS 10,0İstismar yokEPSS %1

    phpbb · phpbb12 Nis 2008

  • CVE-2008-3224
    40Planlayın

    Unspecified vulnerability in phpBB before 3.0.1 has unknown impact and attack vectors related to "urls gone through redirect() being used wi

    KritikCVSS 10,0İstismar yokEPSS %1

    phpbb · phpbb18 Tem 2008

  • CVE-2007-3935
    38İzleyin

    PHP remote file inclusion vulnerability in link_main.php in the SupaNav 1.0.0 module for phpBB allows remote attackers to execute arbitrary

    KritikCVSS 9,3Kavram kanıtıEPSS %4

    phpbb · supanav20 Tem 2007

  • CVE-2001-1471
    37İzleyin

    prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid language value, which pr

    YüksekCVSS 8,8Kavram kanıtıEPSS %8

    phpbb · phpbb31 Tem 2001

  • CVE-2019-16993
    35İzleyin

    In phpBB before 3.1.7-PL1, includes/acp/acp_bbcodes.php has improper verification of a CSRF token on the BBCode page in the Administration C

    YüksekCVSS 8,8İstismar yokEPSS %1

    phpbb · phpbb30 Eyl 2019

  • CVE-2025-70810
    35İzleyin

    Cross Site Request Forgery vulnerability in Phpbb phbb3 v.3.3.15 allows a local attacker to execute arbitrary code via the login function an

    YüksekCVSS 8,8İstismar yokEPSS %0

    phpbb · phpbb9 Nis 2026

  • CVE-2006-7168
    32İzleyin

    PHP remote file inclusion vulnerability in includes/not_mem.php in the Add Name module for PHP allows remote attackers to execute arbitrary

    YüksekCVSS 7,5Kavram kanıtıEPSS %7

    phpbb · phpbb20 Mar 2007

  • CVE-2026-29199
    32İzleyin

    phpBB before 3.3.16 is vulnerable to Host Header Injection that can lead to password rest link poisoning.

    YüksekCVSS 8,1İstismar yokEPSS %0

    phpbb · phpbb4 May 2026

  • CVE-2007-0761
    31İzleyin

    PHP remote file inclusion vulnerability in config.php in phpBB ezBoard converter (ezconvert) 0.2 allows remote attackers to execute arbitrar

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    phpbb · ezboard converter5 Şub 2007

  • CVE-2006-5309
    31İzleyin

    PHP remote file inclusion vulnerability in language/lang_french/lang_prillian_faq.php in the Prillian French 0.8.0 and earlier module for ph

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    phpbb · prillian french17 Eki 2006

  • CVE-2006-6593
    31İzleyin

    PHP remote file inclusion vulnerability in zufallscodepart.php in AMAZONIA MOD for phpBB allows remote attackers to execute arbitrary PHP co

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb · amazonia mod15 Ara 2006

  • CVE-2007-1961
    31İzleyin

    PHP remote file inclusion vulnerability in mutant_functions.php in the Mutant 0.9.2 portal for phpBB 2.2 allows remote attackers to execute

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb · mutant11 Nis 2007

  • CVE-2008-1565
    31İzleyin

    Directory traversal vulnerability in forum/irc/irc.php in the PJIRC 0.5 module for phpBB allows remote attackers to include and execute arbi

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb · pjirc module31 Mar 2008

  • CVE-2008-1512
    31İzleyin

    Directory traversal vulnerability in admin/admin_xs.php in eXtreme Styles module (XS-Mod) 2.3.1 and 2.4.0 for phpBB allows remote attackers

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb · module xs25 Mar 2008

  • CVE-2002-2287
    31İzleyin

    PHP remote file inclusion vulnerability in quick_reply.php for phpBB Advanced Quick Reply Hack 1.0.0 and 1.1.0 allows remote attackers to ex

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb · advanced quick reply hack31 Ara 2002

  • CVE-2006-5312
    31İzleyin

    PHP remote file inclusion vulnerability in shoutbox.php in the Ajax Shoutbox 0.0.5 and earlier module for phpBB allows remote attackers to e

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    phpbb · ajax shoutbox17 Eki 2006

  • CVE-2019-9826
    31İzleyin

    The fulltext search component in phpBB before 3.2.6 allows Denial of Service.

    YüksekCVSS 7,5İstismar yokEPSS %2

    phpbb · phpbb2 May 2019

  • CVE-2018-19274
    30İzleyin

    Passing an absolute path to a file_exists check in phpBB before 3.2.4 allows Remote Code Execution through Object Injection by employing Pha

    YüksekCVSS 7,2İstismar yokEPSS %5

    phpbb · phpbb17 Kas 2018

  • phpBB version 3.2.0 is vulnerable to SSRF in the Remote Avatar function resulting allowing an attacker to perform port scanning, requesting

    YüksekCVSS 7,5İstismar yokEPSS %1

    phpbb · phpbb2 Oca 2018

  • CVE-2010-1630
    30İzleyin

    Unspecified vulnerability in posting.php in phpBB before 3.0.5 has unknown impact and attack vectors related to the use of a "forum id" in c

    YüksekCVSS 7,5İstismar yokEPSS %1

    phpbb · phpbb19 May 2010

  • CVE-2019-16108
    30İzleyin

    phpBB 3.2.7 allows adding an arbitrary Cascading Style Sheets (CSS) token sequence to a page through BBCode.

    YüksekCVSS 7,5İstismar yokEPSS %1

    phpbb · phpbb19 Mar 2020

  • CVE-2003-1530
    30İzleyin

    SQL injection vulnerability in privmsg.php in phpBB 2.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the mark

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    phpbb · phpbb31 Ara 2003

  • CVE-2007-4653
    30İzleyin

    SQL injection vulnerability in links.php in the Links MOD 1.2.2 and earlier for phpBB 2.0.22 and earlier allows remote attackers to execute

    YüksekCVSS 7,5Kavram kanıtıEPSS %1

    phpbb · phpbb4 Eyl 2007