CVE-2017-1000419

phpBB version 3.2.0 is vulnerable to SSRF in the Remote Avatar function resulting allowing an attacker to perform port scanning, requesting internal content and potentially attacking such internal services via the web application.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpbb:phpbb:3.2.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-01-02 19:29

Updated : 2023-12-10 12:15


NVD link : CVE-2017-1000419

Mitre link : CVE-2017-1000419

CVE.ORG link : CVE-2017-1000419


JSON object : View

Products Affected

phpbb

  • phpbb
CWE
CWE-918

Server-Side Request Forgery (SSRF)