Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vbulletin vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2008-4706
SQL injection vulnerability in VBGooglemap Hotspot Edition 1.0.3, a vBulletin module, allows remote malicious users to execute arbitrary SQL commands via the mapid parameter in a showdetails action to (1) vbgooglemaphse.php and (2) mapa.php.
Vbulletin Vbgooglemap 1.0.3
1 EDB exploit
4.3
CVSSv2
CVE-2008-3773
Cross-site scripting (XSS) vulnerability in vBulletin 3.7.2 PL1 and 3.6.10 PL3, when "Show New Private Message Notification Pop-Up" is enabled, allows remote authenticated users to inject arbitrary web script or HTML via a private message subject (aka newpm[title]).
Vbulletin Vbulletin 3.6.10
Vbulletin Vbulletin 3.7.2
1 EDB exploit
4.3
CVSSv2
CVE-2008-3184
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.6.10 PL2 and previous versions, and 3.7.2 and previous versions 3.7.x versions, allow remote malicious users to inject arbitrary web script or HTML via (1) the PATH_INFO (PHP_SELF) or (2) the do parameter, as demo...
Vbulletin Vbulletin 3.6.3
Vbulletin Vbulletin 3.6.4
Vbulletin Vbulletin 3.7.1
Vbulletin Vbulletin 3.6.1
Vbulletin Vbulletin 3.6.10
Vbulletin Vbulletin 3.6.7
Vbulletin Vbulletin 3.6.8
Vbulletin Vbulletin 3.6.2
Vbulletin Vbulletin 3.6.9
Vbulletin Vbulletin 3.7.0
Vbulletin Vbulletin 3.6
Vbulletin Vbulletin 3.6.5
Vbulletin Vbulletin 3.6.6
Vbulletin Vbulletin 3.7.2
1 EDB exploit
4.3
CVSSv2
CVE-2008-2744
Cross-site scripting (XSS) vulnerability in vBulletin 3.6.10 and 3.7.1 allows remote malicious users to inject arbitrary web script or HTML via unknown vectors and an "obscure method." NOTE: the vector is probably in the redirect parameter to the Admin Control Panel (ad...
Vbulletin Vbulletin 3.7.1
Vbulletin Vbulletin 3.6.10
1 EDB exploit
7.5
CVSSv2
CVE-2008-2460
SQL injection vulnerability in faq.php in vBulletin 3.7.0 Gold allows remote malicious users to execute arbitrary SQL commands via the q parameter in a search action.
Vbulletin Vbulletin 3.7.0
4.3
CVSSv2
CVE-2007-4453
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.6.8 allow remote malicious users to inject arbitrary web code or HTML via the (1) s parameter to index.php, and the (2) q parameter to (a) faq.php, (b) member.php, (c) memberlist.php, (d) calendar.php, (e) search....
Jelsoft Vbulletin 3.6.8
9.3
CVSSv2
CVE-2007-4120
Multiple PHP remote file inclusion vulnerabilities in Jelsoft vBulletin 3.6.5 allow remote malicious users to execute arbitrary PHP code via a URL in the (1) classfile parameter to includes/functions.php, the (2) nextitem parameter to includes/functions_cron.php, and the (3) spec...
Jelsoft Vbulletin 3.6.5
6.5
CVSSv2
CVE-2007-3687
SQL injection vulnerability in inferno.php in the Inferno Technologies RPG Inferno 2.4 and previous versions, a vBulletin module, allows remote authenticated malicious users to execute arbitrary SQL commands via the id parameter in a ScanMember do action.
Infernotechnologies Rpg Inferno
1 EDB exploit
5.8
CVSSv2
CVE-2007-3326
Multiple directory traversal vulnerabilities in vBulletin 3.x.x allow remote malicious users to redirect visitors to arbitrary local files via a .. (dot dot) in (1) the loc parameter to admincp/index.php and (2) the Hyperlink information URl field for post Topic in showthread.php...
Jelsoft Vbulletin 3.0.0
7.5
CVSSv2
CVE-2007-2941
Multiple PHP remote file inclusion vulnerabilities in the creator in vBulletin Google Yahoo Site Map (vBGSiteMap) 2.41 for vBulletin allow remote malicious users to execute arbitrary PHP code via a URL in the base parameter to (1) vbgsitemap/vbgsitemap-config.php or (2) vbgsitema...
Michael Brandon Vbgsitemap 2.41
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-3611
CVE-2024-4947
CVE-2024-32988
CVE-2020-35165
local file inclusion
CVE-2024-4980
bypass
malicious code
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »