| Vulnerability Name: | CVE-2005-3310 (CCN-22837) | ||||||||
| Assigned: | 2005-10-22 | ||||||||
| Published: | 2005-10-22 | ||||||||
| Updated: | 2017-07-11 | ||||||||
| Summary: | Interpretation conflict in phpBB 2.0.17, with remote avatars and avatar uploading enabled, allows remote authenticated users to inject arbitrary web script or HTML via an HTML file with a GIF or JPEG file extension, which causes the HTML to be executed by a victim who views the file in Internet Explorer, which renders malformed image types as HTML, enabling cross-site scripting (XSS) attacks. Note: it could be argued that this vulnerability is due to a design flaw in Internet Explorer (CVE-2005-3312) and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in phpBB. | ||||||||
| CVSS v3 Severity: | 2.6 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:N)
| ||||||||
| CVSS v2 Severity: | 3.5 Low (CVSS v2 Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N)
| ||||||||
| Vulnerability Type: | CWE-Other | ||||||||
| Vulnerability Consequences: | Bypass Security | ||||||||
| References: | Source: CCN Type: Full-Disclosure Mailing List, Sat Oct 22 2005 - 09:42:48 CDT phpBB 2.0.17 (and other BB systems as well) Cookie disclosure exploit. Source: FULLDISC Type: Exploit 20051022 phpBB 2.0.17 (and other BB systems as well) Cookie disclosure exploit. Source: MITRE Type: CNA CVE-2005-3310 Source: BUGTRAQ Type: UNKNOWN 20051022 phpBB 2.0.17 (and other BB systems as well) Cookie disclosure Source: CCN Type: SA17295 phpBB Avatar Script Insertion Vulnerability Source: SECUNIA Type: Patch, Vendor Advisory 17295 Source: SECUNIA Type: Patch, Vendor Advisory 18098 Source: DEBIAN Type: Patch, Vendor Advisory DSA-925 Source: DEBIAN Type: DSA-925 phpbb2 -- several vulnerabilities Source: CCN Type: phpBB Web site phpBB:: Creating Communities Source: CCN Type: PunBB Downloads PunBB Source: BID Type: UNKNOWN 15170 Source: CCN Type: BID-15170 phpBB Avatar Upload HTML Injection Vulnerability Source: CCN Type: BID-15296 vBulletin Image Upload HTML Injection Vulnerability Source: CCN Type: BID-15322 PunBB/Blog:CMS Image Upload HTML Injection Vulnerability Source: CCN Type: vBulletin Web site Introducing vBulletin Source: CCN Type: vBulletin vBulletin 3.5.1, 3.0.10 & 2.3.8 Released Source: XF Type: UNKNOWN phpbb-avatar-bypass-security(22837) Source: XF Type: UNKNOWN phpbb-avatar-bypass-security(22837) | ||||||||
| Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
| Oval Definitions | |||||||||
| |||||||||
| BACK | |||||||||