Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2005-3420

Опубликовано: 01 нояб. 2005
Источник: debian
EPSS Низкий

Описание

usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
phpbb2fixed2.0.18-1package

Примечания

  • http://www.hardened-php.net/advisory_172005.75.html

  • http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=336756

  • Remote code execution may be possible, especially in conjunction

  • with PHP bugs.

EPSS

Процентиль: 84%
0.02323
Низкий

Связанные уязвимости

ubuntu
около 20 лет назад

usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement.

nvd
около 20 лет назад

usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement.

github
больше 3 лет назад

usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement.

EPSS

Процентиль: 84%
0.02323
Низкий