Vulnerability Description
Unspecified vulnerability in phpBB before 3.0.1 has unknown impact and attack vectors related to "urls gone through redirect() being used within login_box()."
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phpbb | Phpbb | <= 3.0.1 |
References
- http://www.openwall.com/lists/oss-security/2008/07/12/1
- http://www.phpbb.com/community/viewtopic.php?f=14&t=1059565&sid=2d3a6352a484588e
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44208
- http://www.openwall.com/lists/oss-security/2008/07/12/1
- http://www.phpbb.com/community/viewtopic.php?f=14&t=1059565&sid=2d3a6352a484588e
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44208
FAQ
What is CVE-2008-3224?
CVE-2008-3224 is a vulnerability with a CVSS score of 10.0 (HIGH). Unspecified vulnerability in phpBB before 3.0.1 has unknown impact and attack vectors related to "urls gone through redirect() being used within login_box()."
How severe is CVE-2008-3224?
CVE-2008-3224 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-3224?
Check the references section above for vendor advisories and patch information. Affected products include: Phpbb Phpbb.