Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vbulletin vbulletin vulnerabilities and exploits
(subscribe to this query)
516
VMScore
CVE-2018-15493
vBulletin 5.4.3 has an Open Redirect.
Vbulletin Vbulletin 5.4.3
516
VMScore
CVE-2018-6200
vBulletin 3.x.x and 4.2.x up to and including 4.2.5 has an open redirect via the redirector.php url parameter.
Vbulletin Vbulletin
516
VMScore
CVE-2014-8670
Open redirect vulnerability in go.php in vBulletin 4.2.1 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
Vbulletin Vbulletin 4.2.1
516
VMScore
CVE-2011-5251
Open redirect vulnerability in forum/login.php in vBulletin 4.1.3 and previous versions allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via the url parameter in a lostpw action.
Vbulletin Vbulletin 4.0.7
Vbulletin Vbulletin 4.0.6
Vbulletin Vbulletin 4.0.5
Vbulletin Vbulletin 4.0.4
Vbulletin Vbulletin 4.1.1
Vbulletin Vbulletin 4.0.8
Vbulletin Vbulletin 4.0.3
Vbulletin Vbulletin 4.0.1
Vbulletin Vbulletin
Vbulletin Vbulletin 4.1.2
Vbulletin Vbulletin 4.1
Vbulletin Vbulletin 4.0.2
Vbulletin Vbulletin 4.0.0
516
VMScore
CVE-2007-3326
Multiple directory traversal vulnerabilities in vBulletin 3.x.x allow remote malicious users to redirect visitors to arbitrary local files via a .. (dot dot) in (1) the loc parameter to admincp/index.php and (2) the Hyperlink information URl field for post Topic in showthread.php...
Jelsoft Vbulletin 3.0.0
510
VMScore
CVE-2005-0429
Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 up to and including 3.0.4, when showforumusers is enabled, allows remote malicious users to execute inject arbitrary PHP commands via the comma parameter.
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0.4
2 EDB exploits
505
VMScore
CVE-2016-6483
The media-file upload feature in vBulletin prior to 3.8.7 Patch Level 6, 3.8.8 before Patch Level 2, 3.8.9 before Patch Level 1, 4.x prior to 4.2.2 Patch Level 6, 4.2.3 before Patch Level 2, 5.x prior to 5.2.0 Patch Level 3, 5.2.1 before Patch Level 1, and 5.2.2 before Patch Leve...
Vbulletin Vbulletin 4.2.3
Vbulletin Vbulletin 3.8.8
Vbulletin Vbulletin 5.2.2
Vbulletin Vbulletin 4.2.2
Vbulletin Vbulletin 3.8.9
Vbulletin Vbulletin 3.8.7
Vbulletin Vbulletin 5.2.0
Vbulletin Vbulletin 5.2.1
1 EDB exploit
1 Article
505
VMScore
CVE-2006-2805
SQL injection vulnerability in VBulletin 3.0.10 allows remote malicious users to execute arbitrary SQL commands via the featureid parameter.
Jelsoft Vbulletin 3.0.10
1 EDB exploit
505
VMScore
CVE-2002-2235
member2.php in vBulletin 2.2.9 and previous versions does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks.
Jelsoft Vbulletin 2.0.2
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.0.1
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.2.9 Can
Jelsoft Vbulletin 2.0
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.6
1 EDB exploit
460
VMScore
CVE-2005-3020
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin prior to 3.0.9 allow remote malicious users to inject arbitrary web script or HTML via the (1) group parameter to css.php, (2) redirect parameter to index.php, (3) email parameter to user.php, (4) goto parameter to ...
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0 Beta 4
Jelsoft Vbulletin 3.0 Beta 5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0.7
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 3.0.2
6 EDB exploits
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-33545
CVE-2024-35725
CVE-2024-32704
overflow
file upload
CVE-2024-0230
CVE-2024-32705
CVE-2024-23692
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »