Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jelsoft vbulletin 3.0.4 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2005-0429
Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 up to and including 3.0.4, when showforumusers is enabled, allows remote malicious users to execute inject arbitrary PHP commands via the comma parameter.
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0.4
2 EDB exploits
7.5
CVSSv2
CVE-2004-1515
SQL injection vulnerability in (1) ttlast.php and (2) last10.php in vBulletin 3.0.x allows remote malicious users to execute arbitrary SQL statements via the fsel parameter, as demonstrated using last.php.
Jelsoft Vbulletin 3.0.0
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0.0 Beta 2
Jelsoft Vbulletin 3.0.0 Can4
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0.0 Rc4
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
1 EDB exploit
7.5
CVSSv2
CVE-2006-2018
SQL injection vulnerability in calendar.php in vBulletin 3.0.x allows remote malicious users to execute arbitrary SQL commands via the eventid parameter. NOTE: the affected version has been disputed by the vendor. It appears that this is the same issue as CVE-2004-0036, which was...
Jelsoft Vbulletin 3.0.12
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.0 Can4
Jelsoft Vbulletin 3.0.0 Rc4
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.0
Jelsoft Vbulletin 3.0.0 Beta 2
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0.6
7.5
CVSSv2
CVE-2005-0511
misc.php for vBulletin 3.0.6 and previous versions, when "Add Template Name in HTML Comments" is enabled, allows remote malicious users to execute arbitrary PHP code via nested variables in the template parameter.
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9 Can
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 2.0 Beta 2
Jelsoft Vbulletin 2.0 Beta 3
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.0 Can4
Jelsoft Vbulletin 3.0.0 Rc4
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 2.0
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 2.0.1
2 EDB exploits
7.5
CVSSv2
CVE-2005-3019
Multiple SQL injection vulnerabilities in vBulletin prior to 3.0.9 allow remote malicious users to execute arbitrary SQL commands via the (1) request parameter to joinrequests.php, (2) limitnumber or (3) limitstart to user.php, (4) usertitle.php, or (5) usertools.php.
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0.7
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 3.0 Gamma
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.8
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.3.0
4 EDB exploits
7.5
CVSSv2
CVE-2005-3024
Multiple SQL injection vulnerabilities in vBulletin 3.0.7 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) announcement parameter to announcement.php, the (2) thread[forumid] or (3) criteria parameters to thread.php, (4) userid para...
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0 Beta 5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 3.0 Beta 4
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 2.3.2
4.3
CVSSv2
CVE-2005-3025
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.0.7 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the loc parameter to (1) modcp/index.php or (2) admincp/index.php, or the ip parameter to (3) modcp/user.php or (4)...
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.2
4.3
CVSSv2
CVE-2005-3020
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin prior to 3.0.9 allow remote malicious users to inject arbitrary web script or HTML via the (1) group parameter to css.php, (2) redirect parameter to index.php, (3) email parameter to user.php, (4) goto parameter to ...
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0 Beta 4
Jelsoft Vbulletin 3.0 Beta 5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0.7
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 3.0.2
6 EDB exploits
7.5
CVSSv2
CVE-2005-3022
Multiple SQL injection vulnerabilities in vBulletin 3.0.9 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) announcement parameter to announcement.php, (2) userid parameter to user.php, (3) calendar parameter to admincalendar.php, (4...
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.7
Jelsoft Vbulletin 3.0.8
Jelsoft Vbulletin 3.0 Gamma
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.1
4.3
CVSSv2
CVE-2005-3023
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.0.9 and previous versions allow remote malicious users to inject arbitrary web script or HTML via certain arguments to (1) announcement.php, (2) admincalendar.php, (3) bbcode.php, (4) cronadmin.php, (5) email.php,...
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0 Beta 5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 3.0 Beta 4
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 2.3.4
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
administrator privileges
CVE-2024-1579
hardcoded
CVE-2023-20198
CVE-2024-33587
CVE-2024-33449
CVE-2024-4308
HTML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »