Author: fw Date: 2005-12-22 09:17:39 +0000 (Thu, 22 Dec 2005) New Revision: 3120 Modified: data/CVE/list Log: CVE-2005-3536, CVE-2005-3537: assigned to phpbb2 Modified: data/CVE/list ==================================================================--- data/CVE/list 2005-12-22 09:14:29 UTC (rev 3119) +++ data/CVE/list 2005-12-22 09:17:39 UTC (rev 3120) @@ -2271,12 +2271,14 @@ RESERVED CVE-2005-3538 RESERVED -CVE-2005-3537 +CVE-2005-3537 [In phpBB2 before 2.0.18, remote can read and edit private messages of other users] RESERVED {DSA-925-1} -CVE-2005-3536 + - phpbb2 2.0.18-1 (bug #336582; medium) +CVE-2005-3536 [SQL injection in phpBB2 before 2.0.18, via $topic_type in posting.php] RESERVED {DSA-925-1} + - phpbb2 2.0.18-1 (bug #336582; medium) CVE-2005-3535 RESERVED CVE-2005-3534 [buffer overflow in the NBD server]