VYPR

Bbzl.PHP

by Sylvain Pasquet

CVEs (2)

  • CVE-2008-4708Oct 23, 2008
    risk 0.03cvss epss 0.02

    BbZL.PhP 0.92 allows remote attackers to bypass authentication and gain administrative access by setting the phorum_admin_session cookie to 1.

  • CVE-2008-4707Oct 23, 2008
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in index.php in BbZL.PhP 0.92 allows remote attackers to access unauthorized directories via a .. (dot dot) in the lien_2 parameter.