PT-2020-20038 · Phpbb · Phpbb

Fvd

·

Published

2020-08-17

·

Updated

2024-03-06

·

CVE-2020-8226

CVSS v3.1

5.8

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions phpBB versions prior to 3.2.10 phpBB versions prior to 3.3.1
Description A vulnerability exists that allows the remote image dimensions check to be used for Server-Side Request Forgery (SSRF).
Recommendations For versions prior to 3.2.10, update to version 3.2.10 or later. For versions prior to 3.3.1, update to version 3.3.1 or later.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

BIT-PHPBB-2020-8226
CVE-2020-8226
GHSA-JHM9-H84H-RW83

Affected Products

Phpbb