Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200411-32
https://security.gentoo.org/
Severity: High
Title: phpBB: Remote command execution
Date: November 24, 2004
Bugs: #71681
ID: 200411-32
Synopsis
=======
phpBB contains a vulnerability which allows a remote attacker to
execute arbitrary commands with the rights of the web server user.
Background
=========
phpBB is an Open Source bulletin board package.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 www-apps/phpbb < 2.0.10 >= 2.0.11
==========
phpBB contains a vulnerability in the highlighting code and several
vulnerabilities in the username handling code.
Impact
=====
An attacker can exploit the highligh...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.