Vulnerability Name: | CVE-2006-6840 (CCN-31390) | ||||||||||||||||
Assigned: | 2006-12-23 | ||||||||||||||||
Published: | 2006-12-23 | ||||||||||||||||
Updated: | 2008-09-05 | ||||||||||||||||
Summary: | Unspecified vulnerability in phpBB before 2.0.22 has unknown impact and remote attack vectors related to a "negative start parameter." | ||||||||||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
3.8 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||
References: | Source: CONFIRM Type: UNKNOWN http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=405980 Source: MITRE Type: CNA CVE-2006-6839 Source: MITRE Type: CNA CVE-2006-6840 Source: MITRE Type: CNA CVE-2006-6841 Source: SECUNIA Type: UNKNOWN 28871 Source: DEBIAN Type: UNKNOWN DSA-1488 Source: DEBIAN Type: DSA-1488 phpbb2 -- several vulnerabilities Source: CCN Type: OSVDB ID: 35441 phpBB "criteria for bad redirection targets" Unspecified Issue Source: CCN Type: OSVDB ID: 35442 phpBB "negative start parameter" Unspecified Issue Source: CCN Type: OSVDB ID: 35443 phpBB Form Session Check Unspecified Issue Source: CCN Type: phpBB Web site phpBB 2.0.22 released Source: CONFIRM Type: Patch http://www.phpbb.com/phpBB/viewtopic.php?f=14&t=489624 Source: BID Type: Patch 21806 Source: CCN Type: BID-21806 PHPBB Multiple Input Validation Vulnerabilities Source: XF Type: UNKNOWN phpbb-sessioncheck-unspecified(31390) | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |