Fully Modded Phpbb is a phpBB forum software variant with a narrow product scope centered on its core forum platform and version 2 release. Its observed vulnerability associations cluster around web-application input-handling issues, particularly SQL injection and code injection, which are typical of forum software with dynamic content and user-contributed functionality. Live severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fully Modded Phpbb over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-1350HIGH SQL injection vulnerability in kb.php in Fully Modded phpBB (phpbbfm) 80220 allows remote attackers to execute arbitrary SQL commands via the k parameter in an article action. | Mar 17, 2008 | 7.5 | 35 | NO | YES |
CVE-2007-2257HIGH PHP remote file inclusion vulnerability in subscp.php in Fully Modded phpBB2 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. | Apr 25, 2007 | 7.5 | 30 | NO | YES |
CVE-2006-5526HIGH Multiple PHP remote file inclusion vulnerabilities in Teake Nutma Foing, as modified in Fully Modded phpBB (phpbbfm) 2021.4.40 and earlier, allow remote attackers to execute arbitr | Oct 26, 2006 | 7.5 | 29 | NO | YES |
CVE-2006-5610CRITICAL PHP remote file inclusion vulnerability in player/includes/common.php in Teake Nutma Foing, as modified in Fully Modded phpBB (phpbbfm) 2021.4.40, allows remote attackers to execut | Oct 31, 2006 | 9.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fully Modded Phpbb.
Media articles that mention a CVE ID that affects a product developed by Fully Modded Phpbb — matched by CVE ID, not by vendor name.