CVE-2002-0473: Critical severity Phpbb Group Phpbb vulnerability
Published Aug 12, 2002
·Updated
db.php in phpBB 2.0 (aka phpBB2) RC-3 and earlier allows remote attackers to execute arbitrary code from remote servers via the phpbbrootpath parameter.
Affected Software
4 affected components
Phpbb Group Phpbb=2.0_rc2
Phpbb Group Phpbb=2.0_rc1
Phpbb Group Phpbb=2.0_rc3
Phpbb Group Phpbb=2.0_beta1
Remediation
Patch Available
Event History
Aug 12, 2002
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0473?
CVE-2002-0473 is considered a critical vulnerability as it allows remote code execution.
2
How do I fix CVE-2002-0473?
To fix CVE-2002-0473, you should upgrade to phpBB version 2.0 RC4 or later.
3
What software is affected by CVE-2002-0473?
CVE-2002-0473 affects phpBB versions 2.0 RC1, 2.0 RC2, 2.0 RC3, and 2.0 Beta1.
4
Can CVE-2002-0473 be exploited remotely?
Yes, CVE-2002-0473 can be exploited remotely by attackers to execute arbitrary code.
5
What are the potential impacts of CVE-2002-0473?
The potential impacts of CVE-2002-0473 include full system compromise due to arbitrary code execution.