Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2009-0592

Disclosure Date: February 16, 2009 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in PNphpBB2 1.2i and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ModName parameter to (1) admin_words.php, (2) admin_groups_reapir.php, (3) admin_smilies.php, (4) admin_ranks.php, (5) admin_styles.php, and (6) admin_users.php in admin/.
0
Attacker Value
Unknown

CVE-2007-6624

Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in printview.php in PNphpBB2 1.2i and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phpEx parameter.
0
Attacker Value
Unknown

CVE-2007-3584

Disclosure Date: July 05, 2007 (last updated October 04, 2023)
SQL injection vulnerability in viewforum.php in PNphpBB2 1.2i and earlier for Postnuke allows remote attackers to execute arbitrary SQL commands via the order parameter.
0
Attacker Value
Unknown

CVE-2007-3052

Disclosure Date: June 06, 2007 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the PNphpBB2 1.2i and earlier module for PostNuke allows remote attackers to execute arbitrary SQL commands via the c parameter.
0
Attacker Value
Unknown

CVE-2006-4968

Disclosure Date: September 25, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/functions_admin.php in PNphpBB 1.2g allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0