Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vbulletin vbulletin 5.0.4 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2014-5102
SQL injection vulnerability in vBulletin 5.0.4 up to and including 5.1.3 Alpha 5 allows remote malicious users to execute arbitrary SQL commands via the criteria[startswith] parameter to ajax/render/memberlist_items.
Vbulletin Vbulletin 5.1.0
Vbulletin Vbulletin 5.1.2
Vbulletin Vbulletin 5.1.1
Vbulletin Vbulletin 5.0.5
Vbulletin Vbulletin 5.0.4
Vbulletin Vbulletin 5.1.3
3.5
CVSSv2
CVE-2014-2021
Cross-site scripting (XSS) vulnerability in admincp/apilog.php in vBulletin 4.2.2 and previous versions, and 5.0.x up to and including 5.0.5 allows remote authenticated users to inject arbitrary web script or HTML via a crafted XMLRPC API request, as demonstrated using the client...
Vbulletin Vbulletin 5.0.4
Vbulletin Vbulletin 5.0.3
Vbulletin Vbulletin
Vbulletin Vbulletin 5.0.5
Vbulletin Vbulletin 5.0.0
Vbulletin Vbulletin 5.0.2
Vbulletin Vbulletin 5.0.1
1 EDB exploit
4
CVSSv2
CVE-2015-3419
vBulletin 5.x up to and including 5.1.6 allows remote authenticated users to bypass authorization checks and inject private messages into conversations via vectors related to an input validation failure.
Vbulletin Vbulletin 5.0.1
Vbulletin Vbulletin 5.0.2
Vbulletin Vbulletin 5.0.3
Vbulletin Vbulletin 5.0.4
Vbulletin Vbulletin 5.1.6
Vbulletin Vbulletin 5.1.3
Vbulletin Vbulletin 5.0.0
Vbulletin Vbulletin 5.0.5
Vbulletin Vbulletin 5.1.0
Vbulletin Vbulletin 5.1.5
Vbulletin Vbulletin 5.1.4
Vbulletin Vbulletin 5.1.2
Vbulletin Vbulletin 5.1.1
7.5
CVSSv2
CVE-2015-7808
The vB_Api_Hook::decodeArguments method in vBulletin 5 Connect 5.1.2 up to and including 5.1.9 allows remote malicious users to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in the arguments parameter to ajax/api/hook/decodeAr...
Vbulletin Vbulletin 5.0.3
Vbulletin Vbulletin 5.0.4
Vbulletin Vbulletin 5.0.5
Vbulletin Vbulletin 5.1.0
Vbulletin Vbulletin 5.1.9
Vbulletin Vbulletin 5.0.0
Vbulletin Vbulletin 5.0.2
Vbulletin Vbulletin 5.1.2
Vbulletin Vbulletin 5.1.5
Vbulletin Vbulletin 5.1.7
Vbulletin Vbulletin 5.1.3
Vbulletin Vbulletin 5.1.4
Vbulletin Vbulletin 5.0.1
Vbulletin Vbulletin 5.1.1
Vbulletin Vbulletin 5.1.6
Vbulletin Vbulletin 5.1.8
2 EDB exploits
4 Github repositories
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
administrator privileges
CVE-2024-1579
hardcoded
CVE-2023-20198
CVE-2024-33587
CVE-2024-33449
CVE-2024-4308
HTML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started