Server side request forgery (SSRF) in phpBB before 3.2.6 allows checking for the existence of files and services on the local network of the host through the remote avatar upload function.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-2389 | Server side request forgery (SSRF) in phpBB before 3.2.6 allows checking for the existence of files and services on the local network of the host through the remote avatar upload function. |
![]() |
GHSA-4hx9-p925-qcv7 | phpBB Server side request forgery (SSRF) |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://www.phpbb.com/community/viewtopic.php?f=14&t=2509941 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:03:32.872Z
Reserved: 2019-05-05T00:00:00
Link: CVE-2019-11767

No data.

Status : Modified
Published: 2019-05-05T06:29:00.647
Modified: 2024-11-21T04:21:45.160
Link: CVE-2019-11767

No data.

No data.