CVE-2019-16107

Missing form token validation in phpBB 3.2.7 allows CSRF in deleting post attachments.
References
Link Resource
https://www.phpbb.com/community/viewtopic.php?t=2523271 Release Notes Vendor Advisory
https://www.phpbb.com/community/viewforum.php?f=14 Release Notes Vendor Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:phpbb:phpbb:3.2.7:*:*:*:*:*:*:*

Information

Published : 2020-03-11 06:15

Updated : 2020-03-11 11:27


NVD link : CVE-2019-16107

Mitre link : CVE-2019-16107


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

phpbb

  • phpbb