Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-0471

Опубликовано: 29 янв. 2008
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpbb:phpbb:2.0.22:*:*:*:*:*:*:*

EPSS

Процентиль: 47%
0.00242
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-352

Связанные уязвимости

ubuntu
почти 18 лет назад

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

debian
почти 18 лет назад

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpB ...

github
больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in privmsg.php in phpBB 2.0.22 allows remote attackers to delete private messages (PM) as arbitrary users via a deleteall action.

EPSS

Процентиль: 47%
0.00242
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-352