Vulnerabilities > Phpbb Group > Phpbb > Critical

DATE CVE VULNERABILITY TITLE RISK
2006-12-31 CVE-2006-6839 Input Validation vulnerability in PHPBB
Unspecified vulnerability in phpBB before 2.0.22 has unknown impact and remote attack vectors related to "criteria for 'bad' redirection targets."
network
low complexity
phpbb-group
critical
10.0
2006-12-31 CVE-2006-6840 Input Validation vulnerability in PHPBB
Unspecified vulnerability in phpBB before 2.0.22 has unknown impact and remote attack vectors related to a "negative start parameter."
network
low complexity
phpbb-group
critical
10.0
2006-12-31 CVE-2006-6841 Input Validation vulnerability in PHPBB
Certain forms in phpBB before 2.0.22 lack session checks, which has unknown impact and remote attack vectors.
network
low complexity
phpbb-group
critical
10.0
2003-03-31 CVE-2002-1537 Unspecified vulnerability in PHPbb Group PHPbb 2.0.0
admin_ug_auth.php in phpBB 2.0.0 allows local users to gain administrator privileges by directly calling admin_ug_auth.php with modifed form fields such as "u".
network
low complexity
phpbb-group
critical
10.0
2002-12-31 CVE-2002-2176 Remote SQL Injection vulnerability in phpBB2 Gender Mod
SQL injection vulnerability in Gender MOD 1.1.3 allows remote attackers to gain administrative access via the user_level parameter in the User Profile page.
network
low complexity
phpbb-group
critical
10.0
2002-08-12 CVE-2002-0473 Remote File Include vulnerability in PHPBB2 'phpbb_root_path'
db.php in phpBB 2.0 (aka phpBB2) RC-3 and earlier allows remote attackers to execute arbitrary code from remote servers via the phpbb_root_path parameter.
network
low complexity
phpbb-group
critical
10.0