Server side request forgery (SSRF) in phpBB before 3.2.6 allows checking for the existence of files and services on the local network of the host through the remote avatar upload function.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-2389 | Server side request forgery (SSRF) in phpBB before 3.2.6 allows checking for the existence of files and services on the local network of the host through the remote avatar upload function. |
Github GHSA |
GHSA-4hx9-p925-qcv7 | phpBB Server side request forgery (SSRF) |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.phpbb.com/community/viewtopic.php?f=14&t=2509941 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:03:32.872Z
Reserved: 2019-05-05T00:00:00
Link: CVE-2019-11767
No data.
Status : Modified
Published: 2019-05-05T06:29:00.647
Modified: 2024-11-21T04:21:45.160
Link: CVE-2019-11767
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA