34 exploited vulnerabilities in Phorum
- Vendors
- Phorum
- With known exploits
- 34
- Affected Phorum versions
- β€ 5.1.20, 3.2.11, 5.1.13, 3.1, 3.1.1, 3.1.1_pre, 3.1.1_rc2, 3.1.1a, 3.1.2, 3.2, 3.2.2, 3.2.3, 3.2.3a, 3.2.3b, 3.2.4, 3.2.5, 3.2.6, 3.2.7, 3.2.8, 3.3.1, 3.3.1a, 3.3.2, 3.3.2a, 3.3.2b3, 3.4, 3.4.1, 3.4.2, 3.4.3, 3.4.4, 3.4.5, 3.4.6, 3.4.7, 3.4.8, 3.4.8a, 5.0.3_beta, 5.0.7_beta, 5.0.9, 5.0.10, 5.0.11, 5.0.12, 5.0.13, 5.0.14, 5.1.14, 3.0.7, 4.3.7, 5.0.0_alpha, 5.0.1_alpha, 5.0.2_alpha, 5.0.4_beta, 5.0.4a_beta, 5.0.14a, 5.2.18, 5.2, 5.2.1, 5.2.10, 5.2.11, 5.2.12, 5.2.13, 5.2.14, 5.2.15, 5.2.16, 5.1.21
Vulnerabilities with exploits
Highest CVSS first β 20 of these already have exploit code on Sploitus
CVE-2007-2339 3 exploits
Phorum 5.1.20 - 'pm.php' Recipient Name SQL InjectionPhorum 5.1.20 - 'admin.php' badwords/banlist Module SQL Injection
CVE-2007-2338 1 exploit
CVE-2006-6550 1 exploit
CVE-2006-3053 1 exploit
CVE-2004-2240
CVE-2004-1938 1 exploit
CVE-2003-1466
CVE-2002-0764 1 exploit
CVE-2000-1233
CVE-2005-3543
CVE-2003-0283 1 exploit
CVE-2007-2249 1 exploit
CVE-2006-3611 1 exploit
CVE-2007-2250 1 exploit
CVE-2005-0843 1 exploit
CVE-2003-1465
CVE-2000-1234 1 exploit
CVE-2000-1232
CVE-2000-1231
CVE-2000-1230 1 exploit
CVE-2000-1229
CVE-2000-1228 1 exploit
CVE-2004-1518
CVE-2012-4234 3 exploits
CVE-2011-4561 1 exploit
CVE-2008-4513
CVE-2007-2248 2 exploits
Phorum 5.1.20 - 'admin.php?Groups Module group_id' Cross-Site ScriptingPhorum 5.1.20 - 'admin.php?modsettings Module smiley_id' Cross-Site Scripting
CVE-2005-2836
CVE-2005-0784
CVE-2005-0783 1 exploit
CVE-2004-2242 1 exploit
CVE-2004-2241
CVE-2004-1822 3 exploits
Phorum 3.x - 'register.php' HTTP_REFERER Cross-Site ScriptingPhorum 3.x - 'login.php' HTTP_REFERER Cross-Site Scripting
CVE-2002-2340