Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

phpbb

About This Vendor

phpbb is a technology vendor producing software and infrastructure products. As a software provider, phpbb's broad product portfolio across multiple domains—including operating systems, cloud infrastructure, enterprise applications, databases, networking, and security tools—creates a large attack surface. Additionally, long support cycles, widespread deployment, and continuous feature development contribute to the accumulation of discovered vulnerabilities over time. Major vendors typically report higher CVE counts not necessarily due to inferior security, but because of greater exposure to security research, responsible disclosure practices, and the sheer complexity of maintaining multiple product lines and legacy systems. Regular security assessments and patching of phpbb's products are critical for organizations running their software in production environments.

Vulnerability Trends for This Vendor

SecUtils has indexed 64 known vulnerabilities from phpbb. This includes 29 high-severity issues requiring prompt remediation. These vulnerabilities affect 35 distinct products across phpbb's portfolio, demonstrating the breadth of the vendor's product ecosystem and the importance of comprehensive patch management strategies. Disclosure dates span from 2001 through 2023, indicating decades of continuous security attention and research. Organizations deploying phpbb products should maintain active vulnerability monitoring, prioritize critical patches, and implement compensating controls where patches cannot be applied immediately.

ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2001-1471 2001-07-31 2025-04-03 8.8 4.6 Unknown
CVE-2002-2255 2002-12-31 2025-04-03 - 4.3 Likely
CVE-2002-2287 2002-12-31 2025-04-03 - 7.5 Likely
CVE-2002-2346 2002-12-31 2025-04-03 - 5.0 Likely
CVE-2002-2349 2002-12-31 2025-04-03 - 5.0 Likely
CVE-2003-1530 2003-12-31 2025-04-03 - 7.5 Likely
CVE-2006-5191 2006-10-10 2025-04-09 - 5.1 Unknown
CVE-2006-5301 2006-10-17 2025-04-09 - 6.8 Likely
CVE-2006-5305 2006-10-17 2025-04-09 - 5.1 Unknown
CVE-2006-5306 2006-10-17 2025-04-09 - 6.8 Likely
CVE-2006-5309 2006-10-17 2025-04-09 - 7.5 Likely
CVE-2006-5312 2006-10-17 2025-04-09 - 7.5 Likely
CVE-2006-5390 2006-10-18 2025-04-09 - 6.8 Likely
CVE-2006-5418 2006-10-20 2025-04-09 - 6.8 Likely
CVE-2006-6459 2006-12-11 2025-04-09 - 6.8 Likely
CVE-2006-6593 2006-12-15 2025-04-09 - 7.5 Likely
CVE-2007-0761 2007-02-06 2025-04-09 - 7.5 Likely
CVE-2006-2220 2007-02-08 2025-04-09 - 5.0 Likely
CVE-2006-7100 2007-03-03 2025-04-09 - 6.8 Likely
CVE-2006-7147 2007-03-07 2025-04-09 - 6.8 Likely
CVE-2006-7148 2007-03-07 2025-04-09 - 10.0 Likely
CVE-2006-7168 2007-03-20 2025-04-09 - 7.5 Likely
CVE-2006-7174 2007-03-21 2025-04-09 - 10.0 Likely
CVE-2007-1961 2007-04-11 2025-04-09 - 7.5 Likely
CVE-2007-2858 2007-05-24 2025-04-09 - 6.5 Likely
CVE-2007-3935 2007-07-21 2025-04-09 - 9.3 Likely
CVE-2007-4653 2007-09-04 2025-04-09 - 7.5 Likely
CVE-2007-4984 2007-09-19 2025-04-09 - 7.5 Likely
CVE-2007-5100 2007-09-26 2025-04-09 - 6.8 Likely
CVE-2007-5173 2007-10-03 2025-04-09 - 6.8 Likely
CVE-2007-5688 2007-10-29 2025-04-09 - 7.5 Likely
CVE-2007-6223 2007-12-04 2025-04-09 - 7.5 Likely
CVE-2008-0471 2008-01-29 2025-04-09 - 4.3 Likely
CVE-2008-1171 2008-03-05 2025-04-09 - 6.8 Likely
CVE-2008-1305 2008-03-12 2025-04-09 - 7.5 Likely
CVE-2008-1512 2008-03-25 2025-04-09 - 7.5 Likely
CVE-2008-1565 2008-03-31 2025-04-09 - 7.5 Likely
CVE-2008-1766 2008-04-12 2025-04-09 - 10.0 Likely
CVE-2008-3224 2008-07-18 2025-04-09 - 10.0 Likely
CVE-2008-4125 2008-09-18 2025-04-09 - 5.0 Likely
CVE-2008-6301 2009-02-26 2025-04-09 - 7.5 Likely
CVE-2008-6314 2009-02-27 2025-04-09 - 7.5 Likely
CVE-2008-6506 2009-03-23 2025-04-09 - 5.0 Likely
CVE-2008-6507 2009-03-23 2025-04-09 - 5.0 Likely
CVE-2008-7143 2009-09-01 2025-04-09 - 6.8 Likely
CVE-2009-3052 2009-09-03 2025-04-09 - 6.5 Likely
CVE-2010-1627 2010-05-19 2025-04-11 - 4.3 Likely
CVE-2010-1630 2010-05-19 2025-04-11 - 7.5 Likely
CVE-2015-1431 2015-02-10 2025-04-12 - 4.3 Likely
CVE-2015-1432 2015-02-10 2025-04-12 - 6.8 Likely
CVE-2015-3880 2017-09-19 2025-04-20 6.1 5.8 Likely
CVE-2017-1000419 2018-01-02 2024-11-21 7.5 5.0 Likely
CVE-2018-19274 2018-11-17 2024-11-21 7.2 6.5 Likely
CVE-2019-9826 2019-05-02 2024-11-21 7.5 5.0 Likely
CVE-2019-11767 2019-05-05 2024-11-21 5.8 5.0 Likely
CVE-2019-13376 2019-09-27 2024-11-21 6.5 4.3 Likely
CVE-2019-16993 2019-09-30 2024-11-21 8.8 6.8 Likely
CVE-2011-0544 2019-11-14 2024-11-21 6.1 4.3 Likely
CVE-2020-5501 2020-01-15 2024-11-21 4.3 4.3 Likely
CVE-2020-5502 2020-01-15 2024-11-21 6.5 4.3 Likely
CVE-2019-16107 2020-03-11 2024-11-21 4.3 4.3 Likely
CVE-2019-16108 2020-03-20 2024-11-21 7.5 5.0 Likely
CVE-2020-8226 2020-08-17 2024-11-21 5.8 5.0 Likely
CVE-2023-5917 2023-11-02 2024-11-21 2.4 3.3 Unknown

How SecUtils Normalizes Vendor Data

SecUtils aggregates National Vulnerability Database (NVD) and MITRE records for phpbb by normalizing vendor identifiers across diverse data sources, mapping vendor names to their associated product lines, and collecting all known vulnerabilities under a unified vendor context. For every CVE associated with phpbb's products, we extract and structure Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) categories, CVSS severity metrics, and reference links to enable rapid vulnerability identification and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and vendor vulnerability tracking.