Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jw8f-q84g-r3vm

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

phpBB vulnerable to sensitive information disclosure

Unspecified vulnerability in phpBB before 3.0.4 allows attackers to obtain sensitive information via unknown vectors related to the lack of password prompts for a private message that quotes a post in a password-protected forum.

Пакеты

Наименование

phpbb/phpbb

composer
Затронутые версииВерсия исправления

< 3.0.4

3.0.4

EPSS

Процентиль: 58%
0.00375
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 16 лет назад

Unspecified vulnerability in phpBB before 3.0.4 allows attackers to obtain sensitive information via unknown vectors related to the lack of password prompts for a private message that quotes a post in a password-protected forum.

nvd
больше 16 лет назад

Unspecified vulnerability in phpBB before 3.0.4 allows attackers to obtain sensitive information via unknown vectors related to the lack of password prompts for a private message that quotes a post in a password-protected forum.

debian
больше 16 лет назад

Unspecified vulnerability in phpBB before 3.0.4 allows attackers to ob ...

EPSS

Процентиль: 58%
0.00375
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-200