Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-1950

Опубликовано: 19 апр. 2004
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

phpBB 2.0.8a and earlier trusts the IP address that is in the X-Forwarded-For in the HTTP header, which allows remote attackers to spoof IP addresses.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:phpbb_group:phpbb:2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.5:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.6c:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.6d:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.7:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.7a:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.8:*:*:*:*:*:*:*
cpe:2.3:a:phpbb_group:phpbb:2.0.8a:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00619
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

debian
больше 21 года назад

phpBB 2.0.8a and earlier trusts the IP address that is in the X-Forwar ...

github
больше 3 лет назад

phpBB 2.0.8a and earlier trusts the IP address that is in the X-Forwarded-For in the HTTP header, which allows remote attackers to spoof IP addresses.

EPSS

Процентиль: 69%
0.00619
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other