Описание
feed.php in phpBB 3.0.7 before 3.0.7-PL1 does not properly check permissions for feeds, which allows remote attackers to bypass intended access restrictions via unspecified attack vectors related to permission settings on a private forum.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:phpbb:phpbb:3.0.7:*:*:*:*:*:*:*
EPSS
Процентиль: 34%
0.00135
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
ubuntu
больше 15 лет назад
feed.php in phpBB 3.0.7 before 3.0.7-PL1 does not properly check permissions for feeds, which allows remote attackers to bypass intended access restrictions via unspecified attack vectors related to permission settings on a private forum.
debian
больше 15 лет назад
feed.php in phpBB 3.0.7 before 3.0.7-PL1 does not properly check permi ...
EPSS
Процентиль: 34%
0.00135
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-264