Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-3415
Description:phpBB 2.0.17 and earlier allows remote attackers to bypass protection mechanisms that deregister global variables by setting both a GET/POST/COOKIE (GPC) variable and a GLOBALS[] variable with the same name, which causes phpBB to unset the GLOBALS[] variable but not the GPC variable.
Test IDs: 1.3.6.1.4.1.25623.1.0.56053  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-3415
BugTraq ID: 15243
http://www.securityfocus.com/bid/15243
Bugtraq: 20051031 Advisory 17/2005: phpBB Multiple Vulnerabilities (Google Search)
http://marc.info/?l=bugtraq&m=113081113317600&w=2
Debian Security Information: DSA-925 (Google Search)
http://www.debian.org/security/2005/dsa-925
http://www.hardened-php.net/advisory_172005.75.html
http://www.osvdb.org/20386
http://securitytracker.com/id?1015121
http://secunia.com/advisories/17366
http://secunia.com/advisories/18098
http://securityreason.com/securityalert/130
XForce ISS Database: phpbb-multiple-variables-bypass-security(22914)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22914




© 1998-2025 E-Soft Inc. All rights reserved.