PHPBB HTTP Referer Information Disclosure Vulnerability
BID:16509
Info
PHPBB HTTP Referer Information Disclosure Vulnerability
| Bugtraq ID: | 16509 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 06 2006 12:00AM |
| Updated: | Feb 06 2006 12:00AM |
| Credit: | Maksymilian Arciemowicz is credited with the discovery of this vulnerability. |
| Vulnerable: |
phpBB Group phpBB 2.0.19 phpBB Group phpBB 2.0.18 phpBB Group phpBB 2.0.17 phpBB Group phpBB 2.0.16 phpBB Group phpBB 2.0.15 phpBB Group phpBB 2.0.14 phpBB Group phpBB 2.0.13 phpBB Group phpBB 2.0.12 phpBB Group phpBB 2.0.11 phpBB Group phpBB 2.0.10 phpBB Group phpBB 2.0.9 phpBB Group phpBB 2.0.8 a phpBB Group phpBB 2.0.8 phpBB Group phpBB 2.0.7 a phpBB Group phpBB 2.0.7 phpBB Group phpBB 2.0.6 d phpBB Group phpBB 2.0.6 c phpBB Group phpBB 2.0.6 phpBB Group phpBB 2.0.5 phpBB Group phpBB 2.0.4 phpBB Group phpBB 2.0.3 phpBB Group phpBB 2.0.2 phpBB Group phpBB 2.0.1 |
| Not Vulnerable: | |
Discussion
PHPBB HTTP Referer Information Disclosure Vulnerability
The phpBB application is prone to an information-disclosure vulnerability. This issue is due to a failure in the application to properly secure the session ID when accessing an external avatar image or external BBCode image.
An attacker can exploit this issue to retrieve the session ID of a currently active victim user.
Successful exploitation of this issue requires that the vulnerable site be configured to use external avatar images; this is not the default setting.
The phpBB application is prone to an information-disclosure vulnerability. This issue is due to a failure in the application to properly secure the session ID when accessing an external avatar image or external BBCode image.
An attacker can exploit this issue to retrieve the session ID of a currently active victim user.
Successful exploitation of this issue requires that the vulnerable site be configured to use external avatar images; this is not the default setting.
Exploit / POC
PHPBB HTTP Referer Information Disclosure Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
PHPBB HTTP Referer Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
References
PHPBB HTTP Referer Information Disclosure Vulnerability
References:
References:
- phpBB 2.0.19 Cross Site Request Forgeries and XSS Admin (Maksymilian Arciemowicz)
- phpBB Homepage (phpBB)
- RE: [Full-disclosure] phpBB 2.0.19 Cross Site Request Forgeries and XSSAdmin (Berliner)
- RE: [Full-disclosure] phpBB 2.0.19 Cross Site Request Forgeries and XSSAdmin (Maksymilian Arciemowicz)