Количество 3
Количество 3
CVE-2008-7143
phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header.
CVE-2008-7143
phpBB 2.0.23 includes the session ID in a request to modcp.php when th ...
GHSA-8jrx-4wqj-328p
phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2008-7143 phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header. | CVSS2: 6.8 | 0% Низкий | больше 16 лет назад | |
CVE-2008-7143 phpBB 2.0.23 includes the session ID in a request to modcp.php when th ... | CVSS2: 6.8 | 0% Низкий | больше 16 лет назад | |
GHSA-8jrx-4wqj-328p phpBB 2.0.23 includes the session ID in a request to modcp.php when the moderator or administrator closes a thread, which allows remote attackers to hijack the session via a post in the thread containing a URL to a remotely hosted image, which might include the session ID in the Referer header. | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу