Name | CVE-2006-0450 |
Description | phpBB 2.0.19 and earlier allows remote attackers to cause a denial of service (application crash) by (1) registering many users through profile.php or (2) using search.php to search in a certain way that confuses the database. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|
phpbb2 | source | (unstable) | (unfixed) | unimportant | | |
Notes
As discussed with the phpbb maintainers; this is only a lack of feature
(phpbb2 doesn't allow a kind of rate control for maximum login/searches for
a certain time frame), but not a directly fixable security problem