CVE-2020-8226

MEDIUM5.8EPSS 0.18%

phpBB Server-Side Request Forgery Vulnerability

Published: 5/24/2022Modified: 12/6/2023
Also known as:GHSA-jhm9-h84h-rw83BIT-phpbb-2020-8226

Description

A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N

References (7)