oss-sec mailing list archives

CVE request: phpbb < 3.0.4


From: Hanno Böck <hanno () hboeck de>
Date: Fri, 6 Feb 2009 14:09:33 +0100

From release notes:

"This release fixes some bugs introduced with the changes in 3.0.3, corrects 
minor issues, fixes two security bugs and also increases performance 
significantly."

"# [Sec] Fixed an issue where deactivated accounts could be re-activated 
without the required privileges. (Reported by Jorick)
# [Sec] Ask for forum password if post within passworded forum quoted in 
private message. (Reported by nickvergessen)"

-- 
Hanno Böck              Blog:           http://www.hboeck.de/
GPG: 3DBD3B20           Jabber/Mail:    hanno () hboeck de

Attachment: signature.asc
Description: This is a digitally signed message part.


Current thread: