Phpbbxs maintains a narrowly scoped forum software product, phpBB XS, with a limited vulnerability footprint centered on web application implementation. The observed disclosures reflect typical application-layer concerns; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpbbxs over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-4780HIGH PHP remote file inclusion vulnerability in includes/functions.php in phpBB XS 0.58 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_pat | Sep 14, 2006 | 7.5 | 34 | NO | YES |
CVE-2006-5094MEDIUM PHP remote file inclusion vulnerability in includes/functions_kb.php in the phpBB XS 2 (Spain version) allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_ | Sep 29, 2006 | 5.1 | 23 | NO | YES |
CVE-2006-4893HIGH PHP remote file inclusion vulnerability in bb_usage_stats/includes/bb_usage_stats.php in phpBB XS 0.58 and earlier allows remote attackers to execute arbitrary PHP code via a URL i | Sep 19, 2006 | 7.5 | 20 | NO | NO |
CVE-2007-5033MEDIUM Cross-site scripting (XSS) vulnerability in profile.php in phpBB XS 2 allows remote attackers to inject arbitrary web script or HTML via the selfdes parameter in a profile_info edi | Sep 21, 2007 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpbbxs.
Media articles that mention a CVE ID that affects a product developed by Phpbbxs — matched by CVE ID, not by vendor name.