CVE-2002-0533: Medium severity Phpbb Group Phpbb vulnerability
Published Jun 11, 2002
·Updated
phpBB 1.4.4 and earlier with BBcode allows remote attackers to cause a denial of service (CPU consumption) and corrupt the database via null \0 characters within [code] tags.
Affected Software
7 affected components
Phpbb Group Phpbb=1.2.1
Phpbb Group Phpbb=1.4.1
Phpbb Group Phpbb=1.4.4
Phpbb Group Phpbb=1.4.2
Phpbb Group Phpbb=1.0.0
Phpbb Group Phpbb=1.2.0
Phpbb Group Phpbb=1.4.0
Remediation
Patch Available
Patch Available
Event History
Jun 11, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0533?
CVE-2002-0533 has a moderate severity level due to potential denial of service and database corruption risks.
2
How do I fix CVE-2002-0533?
To fix CVE-2002-0533, upgrade to phpBB version 1.4.5 or later which addresses this vulnerability.
3
What software versions are affected by CVE-2002-0533?
CVE-2002-0533 affects phpBB versions 1.0.0 through 1.4.4.
4
What type of vulnerability is CVE-2002-0533?
CVE-2002-0533 is a vulnerability that allows remote attackers to cause denial of service through malformed BBcode.
5
Can CVE-2002-0533 be exploited remotely?
Yes, CVE-2002-0533 can be exploited remotely by sending specially crafted BBcode containing null characters.