CVE-2006-0450 Information

Description

phpBB 2.0.19 and earlier allows remote attackers to cause a denial of service (application crash) by (1) registering many users through profile.php or (2) using search.php to search in a certain way that confuses the database.

Reference

http://h4cky0u.org/viewtopic.php?t=637 http://securityreason.com/securityalert/368 http://www.h4cky0u.org/advisories/HYSA-2006-001-phpbb.txt http://www.securityfocus.com/archive/1/423030/100/0/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/24327

Share on: