{"id":"GHSA-h3mr-q96r-37v4","summary":"phpBB Remote Code Execution","details":"Passing an absolute path to a file_exists check in phpBB before 3.2.4 allows Remote Code Execution through Object Injection by employing Phar deserialization when an attacker has access to the Admin Control Panel with founder permissions.","aliases":["CVE-2018-19274"],"modified":"2024-04-24T18:11:36.472458Z","published":"2022-05-13T01:50:50Z","database_specific":{"github_reviewed_at":"2024-04-24T17:50:29Z","nvd_published_at":"2018-11-17T13:29:00Z","cwe_ids":["CWE-502"],"severity":"HIGH","github_reviewed":true},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2018-19274"},{"type":"WEB","url":"https://blog.ripstech.com/2018/phpbb3-phar-deserialization-to-remote-code-execution"},{"type":"PACKAGE","url":"https://github.com/phpbb/phpbb-app"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2018/11/msg00029.html"},{"type":"WEB","url":"https://www.phpbb.com/community/viewtopic.php?f=14&t=2492206"}],"affected":[{"package":{"name":"phpbb/phpbb","ecosystem":"Packagist","purl":"pkg:composer/phpbb/phpbb"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.2.4"}]}],"versions":["3.0.12","3.0.12-RC1","3.0.12-RC2","3.0.12-RC3","3.0.13","3.0.13-PL1","3.0.13-RC1","3.0.14","3.0.14-RC1","3.1.0","3.1.0-RC1","3.1.0-RC2","3.1.0-RC3","3.1.0-RC4","3.1.0-RC5","3.1.0-RC6","3.1.0-a1","3.1.0-a2","3.1.0-a3","3.1.0-b1","3.1.0-b2","3.1.0-b3","3.1.0-b4","3.1.1","3.1.10","3.1.10-RC1","3.1.11","3.1.11-RC1","3.1.12","3.1.2","3.1.2-RC1","3.1.3","3.1.3-RC1","3.1.3-RC2","3.1.4","3.1.4-RC1","3.1.4-RC2","3.1.5","3.1.5-RC1","3.1.6","3.1.6-RC1","3.1.7","3.1.7-RC1","3.1.7-pl1","3.1.8","3.1.8-RC1","3.1.9","3.1.9-RC1","3.2.0","3.2.0-RC1","3.2.0-RC2","3.2.0-a1","3.2.0-b2","3.2.1","3.2.1-RC1","3.2.2","3.2.2-RC1","3.2.3","3.2.3-RC1","3.2.3-RC2","3.2.4-RC1"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-h3mr-q96r-37v4/GHSA-h3mr-q96r-37v4.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"}]}