February 22, 2005

phpbb: new exploit


by brian_turner

A new exploit has been found on the phpbb 2.x software, which has been rated as “moderately critical”.

As reported in the Secunia security advisory phpBB Avatar Functions Information Disclosure and Deletion:

The vulnerabilities are caused due to some unspecified errors in the avatar handling functions and may be exploited to disclose and delete arbitrary files.

Some issues disclosing the full path to certain scripts have also been reported.

This means that phpbb 2.0.12 has now been released, with more information available here: phpBB 2.0.12 released

Questions? Discuss this in our Internet Business forums for help and advice

Story link: phpbb: new exploit

Add to Bookmarks:

ADD TO DEL.ICIO.US     ADD TO DIGG     ADD TO FURL
ADD TO STUMBLEUPON     ADD TO YAHOO MYWEB     ADD TO GOOGLE     ADD TO SPURL

 

Leave a Reply




 

Previous: « SEO Organisations form up
Next: Hackers’ Methods, Part One »

Visited 4476 times, 5 so far today