PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability
BID:30395
Info
PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability
| Bugtraq ID: | 30395 |
| Class: | Unknown |
| CVE: |
CVE-2008-3335 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 28 2008 12:00AM |
| Updated: | Jul 28 2008 08:17PM |
| Credit: | Stefan Esser |
| Vulnerable: |
PunBB PunBB 1.2.18 PunBB PunBB 1.2.17 PunBB PunBB 1.2.16 PunBB PunBB 1.2.15 PunBB PunBB 1.2.14 PunBB PunBB 1.2.13 PunBB PunBB 1.2.12 PunBB PunBB 1.2.11 PunBB PunBB 1.2.10 PunBB PunBB 1.2.10 PunBB PunBB 1.2.9 PunBB PunBB 1.2.8 PunBB PunBB 1.2.7 PunBB PunBB 1.2.6 PunBB PunBB 1.2.5 PunBB PunBB 1.2.4 PunBB PunBB 1.2.3 PunBB PunBB 1.2.2 PunBB PunBB 1.2.1 PunBB PunBB 1.1.5 PunBB PunBB 1.1.4 PunBB PunBB 1.1.3 PunBB PunBB 1.1.2 PunBB PunBB 1.1.1 PunBB PunBB 1.1 PunBB PunBB 1.0.1 PunBB PunBB 1.0 RC2 PunBB PunBB 1.0 RC1 PunBB PunBB 1.0 _beta3 PunBB PunBB 1.0 _beta2 PunBB PunBB 1.0 _beta1 PunBB PunBB 1.0 _alpha PunBB PunBB 1.0 |
| Not Vulnerable: |
PunBB PunBB 1.2.19 |
Discussion
PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability
PunBB is prone to an unspecified vulnerability that can be leveraged to inject arbitrary SMTP commands.
Attackers can leverage this issue to execute unauthorized SMTP commands. This can compromise the application and aid in other attacks.
Versions prior to PunBB 1.2.19 are vulnerable.
PunBB is prone to an unspecified vulnerability that can be leveraged to inject arbitrary SMTP commands.
Attackers can leverage this issue to execute unauthorized SMTP commands. This can compromise the application and aid in other attacks.
Versions prior to PunBB 1.2.19 are vulnerable.
Exploit / POC
PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability
Solution:
The vendor released PunBB 1.2.19 to address this issue. Please see the references for more information.
PunBB PunBB 1.0 RC1
PunBB PunBB 1.0
PunBB PunBB 1.0 _beta2
PunBB PunBB 1.0 RC2
PunBB PunBB 1.0 _beta3
PunBB PunBB 1.0 _alpha
PunBB PunBB 1.0 _beta1
PunBB PunBB 1.0.1
PunBB PunBB 1.1
PunBB PunBB 1.1.1
PunBB PunBB 1.1.2
PunBB PunBB 1.1.3
PunBB PunBB 1.1.4
PunBB PunBB 1.1.5
PunBB PunBB 1.2.1
PunBB PunBB 1.2.10
PunBB PunBB 1.2.10
PunBB PunBB 1.2.11
PunBB PunBB 1.2.12
PunBB PunBB 1.2.13
PunBB PunBB 1.2.14
PunBB PunBB 1.2.15
PunBB PunBB 1.2.16
PunBB PunBB 1.2.17
PunBB PunBB 1.2.18
PunBB PunBB 1.2.2
PunBB PunBB 1.2.3
PunBB PunBB 1.2.4
PunBB PunBB 1.2.5
PunBB PunBB 1.2.6
PunBB PunBB 1.2.7
PunBB PunBB 1.2.8
PunBB PunBB 1.2.9
Solution:
The vendor released PunBB 1.2.19 to address this issue. Please see the references for more information.
PunBB PunBB 1.0 RC1
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0 _beta2
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0 RC2
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0 _beta3
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0 _alpha
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0 _beta1
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.0.1
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.1
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.1.1
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.1.2
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.1.3
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.1.4
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.1.5
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.1
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.10
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.10
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.11
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.12
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.13
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.14
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.15
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.16
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.17
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.18
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.2
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.3
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.4
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.5
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.6
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.7
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.8
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
PunBB PunBB 1.2.9
-
PunBB punbb-1.2.19.tar.gz
http://punbb.informer.com/download/punbb-1.2.19.tar.gz
References
PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability
References:
References:
- Changelog 1.2.17 to 1.2.19 (PunBB)
- PunBB Homepage (PunBB)