📦

pnphpbb2

Vendor: postnuke_software_foundation

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 14.93% Exploit Prob.
Latest CVE CVE-2009-0592 Feb 16

Security Vulnerability Index

Page 1 / 1
7.5 CVSS
CVE-2009-0592
Exploit Found

Multiple directory traversal vulnerabilities in PNphpBB2 1.2i and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ModName parameter to (1) admin_words.php, (2) admin_groups_reapir.php, (3) admin_smilies.php, (4) admin_ranks.php, (5) admin_styles.php, and (6) admin_users.php in admin/.

EPSS: 28.83%
7.5 CVSS
CVE-2007-3584
Exploit Found

SQL injection vulnerability in viewforum.php in PNphpBB2 1.2i and earlier for Postnuke allows remote attackers to execute arbitrary SQL commands via the order parameter.

EPSS: 1.03%