M Phorum is a narrowly scoped discussion forum platform with a limited vulnerability footprint concentrated in the single product line. The observed disclosures reflect general application-layer weaknesses typical of web-based community software; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by M Phorum over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-1151MEDIUM Cross-site scripting vulnerability in index.php in M-Phorum 0.2 allows remote attackers to inject arbitrary web script or HTML via the go parameter. | Mar 10, 2006 | 5.0 | 23 | NO | YES |
CVE-2006-1152MEDIUM PHP remote file inclusion vulnerability in index.php in M-Phorum 0.2 allows remote attackers to include arbitrary files via the go parameter. NOTE: the provenance of this informat | Mar 10, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by M Phorum.
Media articles that mention a CVE ID that affects a product developed by M Phorum — matched by CVE ID, not by vendor name.