Vulnerability index

Browse CVEs

50 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Maluinfo HIGH 10.0
CVE-2006-7148

PHP remote file inclusion vulnerability in includes/bb_usage_stats.php in maluinfo 206.2.38 for Brazilian PHPBB allows remote attackers to execute ar…

Mitigation only
Fix from $1,950 2007-03-07
Import Tools MEDIUM 6.8
CVE-2006-7147

PHP remote file inclusion vulnerability in includes/functions_mod_user.php in phpBB Import Tools Mod 0.1.4 and earlier allows remote attackers to exe…

No fix yet
Fix from $1,600 2007-03-07
Insert User MEDIUM 6.8
CVE-2006-7100

PHP remote file inclusion vulnerability in includes/functions_mod_user.php in phpBB Insert User 0.1.2 and earlier allows remote attackers to execute …

Fix: after 0.1.2
Fix from $1,600 2007-03-03
Phpbb MEDIUM 5.0
CVE-2006-2220

phpBB 2.0.20 does not properly verify user-specified input variables used as limits to SQL queries, which allows remote attackers to obtain sensitive…

Mitigation only
Fix from $1,600 2007-02-08
Ezboard Converter HIGH 7.5
CVE-2007-0761

PHP remote file inclusion vulnerability in config.php in phpBB ezBoard converter (ezconvert) 0.2 allows remote attackers to execute arbitrary PHP cod…

No fix yet
Fix from $1,950 2007-02-06
Amazonia Mod HIGH 7.5
CVE-2006-6593

PHP remote file inclusion vulnerability in zufallscodepart.php in AMAZONIA MOD for phpBB allows remote attackers to execute arbitrary PHP code via a …

Mitigation only
Fix from $1,950 2006-12-15
Toplist MEDIUM 6.8
CVE-2006-6459

Cross-site scripting (XSS) vulnerability in toplist.php in PhpBB Toplist 1.3.7 allows remote attackers to inject arbitrary HTML or web script via the…

Mitigation only
Fix from $1,600 2006-12-11
Searchindexer MEDIUM 6.8
CVE-2006-5418EPSS 6%

PHP remote file inclusion vulnerability in archive/archive_topic.php in pbpbb archive for search engines (SearchIndexer) (aka phpBBSEI) for phpBB all…

No fix yet
Fix from $1,600 2006-10-20
Acp User Registration Module MEDIUM 6.8
CVE-2006-5390

PHP remote file inclusion vulnerability in includes/functions_mod_user.php in the ACP User Registration (MMW) 1.00 module for phpBB allows remote att…

Patch available
Fix from $1,600 2006-10-18
Prillian French HIGH 7.5
CVE-2006-5309

PHP remote file inclusion vulnerability in language/lang_french/lang_prillian_faq.php in the Prillian French 0.8.0 and earlier module for phpBB allow…

Fix: after 0.8.0
Fix from $1,950 2006-10-17
Ajax Shoutbox HIGH 7.5
CVE-2006-5312

PHP remote file inclusion vulnerability in shoutbox.php in the Ajax Shoutbox 0.0.5 and earlier module for phpBB allows remote attackers to execute ar…

Fix: after 0.0.5
Fix from $1,950 2006-10-17
Spamblockermod MEDIUM 6.8
CVE-2006-5301EPSS 6%

PHP remote file inclusion vulnerability in includes/antispam.php in the SpamBlockerMODv 1.0.2 and earlier module for phpBB allows remote attackers to…

Fix: after 1.0.2
Fix from $1,600 2006-10-17
Journals System Module MEDIUM 6.8
CVE-2006-5306

Multiple PHP remote file inclusion vulnerabilities in the Journals System module 1.0.2 (RC2) and earlier for phpBB allow remote attackers to execute …

Fix: after 1.0.2_rc2
Fix from $1,600 2006-10-17
Lat2cyr MEDIUM 5.1
CVE-2006-5305

PHP remote file inclusion vulnerability in lat2cyr.php in the lat2cyr 1.0.1 and earlier phpbb module allows remote attackers to execute arbitrary PHP…

Fix: after 1.0.1
Fix from $1,600 2006-10-17
Phpbb MEDIUM 5.1
CVE-2006-5191

PHP remote file inclusion vulnerability in includes/functions_static_topics.php in the Nivisec Static Topics module for phpBB 1.0 and earlier allows …

Fix: after 1.0
Fix from $1,600 2006-10-10
Phpbb HIGH 7.5
CVE-2003-1530

SQL injection vulnerability in privmsg.php in phpBB 2.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the mark[] parame…

Patch available
Fix from $1,950 2003-12-31
Advanced Quick Reply Hack HIGH 7.5
CVE-2002-2287

PHP remote file inclusion vulnerability in quick_reply.php for phpBB Advanced Quick Reply Hack 1.0.0 and 1.1.0 allows remote attackers to execute arb…

No fix yet
Fix from $1,950 2002-12-31
Phpbb MEDIUM 5.0
CVE-2002-2346

phpBB 2.0 through 2.0.3 generates names for uploaded avatar files with the hex-encoded IP address of the client system, which allows remote attackers…

Mitigation only
Fix from $1,600 2002-12-31
Phpbbmod MEDIUM 5.0
CVE-2002-2349

phpinfo.php in phpBBmod 1.3.3 executes the phpinfo function, which allows remote attackers to obtain sensitive environment information.

No fix yet
Fix from $1,600 2002-12-31
Phpbb HIGH 8.8
CVE-2001-1471EPSS 8%

prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid language value, which prevents th…

Fix: after 1.4.0
Fix from $1,950 2001-07-31