GHSA-hwq7-cvp8-6hm3
Dashboard / Vulnerabilities / GHSA-hwq7-cvp8-6hm3
Summary: phpBB Open Redirect
Details: Open redirect vulnerability in phpBB before 3.0.14 and 3.1.x before 3.1.4 allows remote attackers to redirect users of Google Chrome to arbitrary web sites and conduct phishing attacks via unspecified vectors.
References: https://nvd.nist.gov/vuln/detail/CVE-2015-3880, https://github.com/phpbb/phpbb/commit/1a3350619f428d9d69d196c52128727e27ef2f04, https://github.com/phpbb/phpbb/commit/c1702b8e19a69c98ef049abb4e14157e3e208ed4, https://github.com/phpbb/phpbb, https://web.archive.org/web/20170520103544/http://www.securityfocus.com/bid/74592, https://wiki.phpbb.com/Release_Highlights/3.0.14, https://wiki.phpbb.com/Release_Highlights/3.1.4, https://www.phpbb.com/community/viewtopic.php?f=14&t=2313941, http://www.openwall.com/lists/oss-security/2015/05/12/10
Affected packages
Package
Name: phpbb/phpbb
Purl: pkg:composer/phpbb/phpbb
Affected ranges
Type: ECOSYSTEM
Events:
