Vulnerabilities > Punbb > Punbb > 1.2.10

DATE CVE VULNERABILITY TITLE RISK
2006-03-09 CVE-2006-1090 Denial-Of-Service vulnerability in Punbb 1.2.10
register.php in PunBB 1.2.10 allows remote attackers to cause an unspecified denial of service via a flood of new user registrations.
network
low complexity
punbb
7.8
2006-03-09 CVE-2006-1089 Cross-Site Scripting vulnerability in PunBB
Cross-site scripting (XSS) vulnerability in header.php in PunBB 1.2.10 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly handled when the PHP_SELF variable is used to handle a pun_page tag.
network
punbb
4.3
2006-02-23 CVE-2006-0866 Remote Security vulnerability in Punbb
PunBB 1.2.10 and earlier allows remote attackers to conduct brute force guessing attacks for an account's password, which may be as short as 4 characters.
network
low complexity
punbb
5.0
2006-02-23 CVE-2006-0865 Denial-Of-Service vulnerability in Punbb
PunBB 1.2.10 and earlier allows remote attackers to cause a denial of service (resource consumption) by registering many user accounts quickly.
network
low complexity
punbb
5.0