cve/2005/CVE-2005-3420.md
2024-06-18 02:51:15 +02:00

742 B

CVE-2005-3420

Description

usercp_register.php in phpBB 2.0.17 allows remote attackers to modify regular expressions and execute PHP code via the signature_bbcode_uid parameter, as demonstrated by injecting an "e" modifier into a preg_replace statement.

POC

Reference

Github

No PoCs found on GitHub currently.