Nuke Security 2008

Posted on Tuesday, January 29, 2008 @ 09:18:10 PST in Security
by Raven

Evaders99 writes:  
Another security bug, this time with phpBB. You could possibly delete your entire Private Message inbox, but only if you are logged in and get sent some nasty code.

phpBB 2.0.22 Remote PM Delete XSRF Vulnerability

See the link for the fix

Also if you didn't see the more urgent SQL injection in the Search module...
PHP-Nuke modules/Search/index.php SQL fix is here

click Related        click Share
News ©

Site Info v2.2.2

Last SeenLast Seen
Server TrafficServer Traffic
  • Total: 369,586,479
  • Today: 101,048
Server InfoServer Info
  • Oct 18, 2018
  • 10:46 pm PDT

Daily Inspiration