Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Kevinoclam

#50842of 53,624
4.3Total CVSS
Vulnerabilities · 1
PT-2020-9789
4.3
2020-03-11
Phpbb · Phpbb · CVE-2019-16107
**Name of the Vulnerable Software and Affected Versions** phpBB version 3.2.7 **Description** The issue is related to missing form token validation, which allows Cross-Site Request Forgery (CSRF) attacks. Specifically, this affects the deletion of post attachments. **Recommendations** For phpBB version 3.2.7, update to a version that includes the fix for the missing form token validation to prevent CSRF attacks in deleting post attachments.