VYPR
High severity7.5NVD Advisory· Published Jan 2, 2018· Updated Jun 17, 2026

CVE-2017-1000419

CVE-2017-1000419

Description

phpBB version 3.2.0 is vulnerable to SSRF in the Remote Avatar function resulting allowing an attacker to perform port scanning, requesting internal content and potentially attacking such internal services via the web application.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
phpbb/phpbbPackagist
>= 3.2.0, < 3.2.13.2.1

Affected products

1

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.