Show filters
183 Total Results
Displaying 41-50 of 183
Sort by:
Attacker Value
Unknown
CVE-2007-5033
Disclosure Date: September 21, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in profile.php in phpBB XS 2 allows remote attackers to inject arbitrary web script or HTML via the selfdes parameter in a profile_info editprofile action.
0
Attacker Value
Unknown
CVE-2007-5009
Disclosure Date: September 20, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in language/lang_german/lang_main_album.php in phpBB Plus 1.53, and 1.53a before 20070922, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0
Attacker Value
Unknown
CVE-2007-4653
Disclosure Date: September 04, 2007 (last updated October 04, 2023)
SQL injection vulnerability in links.php in the Links MOD 1.2.2 and earlier for phpBB 2.0.22 and earlier allows remote attackers to execute arbitrary SQL commands via the start parameter in a search action.
0
Attacker Value
Unknown
CVE-2007-3935
Disclosure Date: July 21, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in link_main.php in the SupaNav 1.0.0 module for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0
Attacker Value
Unknown
CVE-2007-2858
Disclosure Date: May 24, 2007 (last updated October 04, 2023)
SQL injection vulnerability in the IP-Search functionality in the IP-Tracking Mod for phpBB 2.0.x allows remote authenticated administrators to execute arbitrary SQL commands via the Search Query field.
0
Attacker Value
Unknown
CVE-2007-2257
Disclosure Date: April 25, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in subscp.php in Fully Modded phpBB2 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0
Attacker Value
Unknown
CVE-2007-2208
Disclosure Date: April 24, 2007 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in Extreme PHPBB2 3.0 Pre Final allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter to (1) functions.php or (2) functions_portal.php in includes/.
0
Attacker Value
Unknown
CVE-2007-1961
Disclosure Date: April 11, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in mutant_functions.php in the Mutant 0.9.2 portal for phpBB 2.2 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0
Attacker Value
Unknown
CVE-2007-1695
Disclosure Date: March 27, 2007 (last updated November 08, 2023)
PHP remote file inclusion vulnerability in includes/usercp_register.php in phpBB 2.0.19 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: this issue has been disputed by third-party researchers, stating that the file checks for a global constant and cannot be accessed directly
0
Attacker Value
Unknown
CVE-2006-7174
Disclosure Date: March 21, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/functions.php in the Dimension module of phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: this may be the same issue as CVE-2006-5235.
0