Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHPBB Global Variable Deregistration Bypass Vulnerabilities

phpBB is prone to multiple vulnerabilities resulting from improper deregistration of global variables.
These issues may allow remote attackers to execute arbitrary PHP code and to carry out SQL-injection, HTML-injection, and cross-site scripting attacks.

phpBB 2.0.17 and prior versions are affected by these issues.







 

Privacy Statement
Copyright 2008, SecurityFocus