CVE-2004-1535: High severity Phpbb Group Phpbb vulnerability
PHP remote file inclusion vulnerability in admincash.php for the Cash Mod module for phpBB allows remote attackers to execute arbitrary PHP code by modifying the phpbbrootpath parameter to reference a URL on a remote web server that contains the code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1535?
CVE-2004-1535 is considered a high-severity vulnerability due to its capability to allow remote code execution.
How do I fix CVE-2004-1535?
To fix CVE-2004-1535, it is essential to upgrade to a patched version of phpBB that addresses this vulnerability.
What versions of phpBB are affected by CVE-2004-1535?
CVE-2004-1535 affects phpBB versions 2.0.0 through 2.0.10 and various release candidates.
Can CVE-2004-1535 lead to data breaches?
Yes, CVE-2004-1535 can lead to data breaches as it allows attackers to execute arbitrary PHP code on the server.
Is CVE-2004-1535 still a risk for phpBB users?
CVE-2004-1535 is a significant risk for phpBB users who are still operating on the vulnerable versions and have not applied security updates.