Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
jelsoft vbulletin 2.2.4 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2002-1678
Cross-site scripting (XSS) vulnerability in memberlist.php in Jelsoft vBulletin 2.0 rc 2 up to and including 2.2.4 allows remote malicious users to steal authentication credentials by injecting script into $letterbits.
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
NA
CVE-2002-1922
Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 up to and including 2.2.8 allows remote malicious users to inject arbitrary web script or HTML via the (1) $scriptpath or (2) $url variables.
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.7
1 EDB exploit
NA
CVE-2002-2235
member2.php in vBulletin 2.2.9 and previous versions does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks.
Jelsoft Vbulletin 2.0.2
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.0.1
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.2.9 Can
Jelsoft Vbulletin 2.0
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.6
1 EDB exploit
NA
CVE-2004-2288
Cross-site scripting (XSS) vulnerability in index.php in Jelsoft vBulletin allows remote malicious users to spoof parts of a website via the loc parameter.
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 3.0 Beta 5
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 3.0 Gamma
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.7
1 EDB exploit
NA
CVE-2005-0511
misc.php for vBulletin 3.0.6 and previous versions, when "Add Template Name in HTML Comments" is enabled, allows remote malicious users to execute arbitrary PHP code via nested variables in the template parameter.
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9 Can
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 2.0 Beta 2
Jelsoft Vbulletin 2.0 Beta 3
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.0 Can4
Jelsoft Vbulletin 3.0.0 Rc4
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 2.0
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 2.0.1
2 EDB exploits
NA
CVE-2005-3019
Multiple SQL injection vulnerabilities in vBulletin prior to 3.0.9 allow remote malicious users to execute arbitrary SQL commands via the (1) request parameter to joinrequests.php, (2) limitnumber or (3) limitstart to user.php, (4) usertitle.php, or (5) usertools.php.
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0.7
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 3.0 Gamma
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.8
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.3.0
4 EDB exploits
NA
CVE-2005-3024
Multiple SQL injection vulnerabilities in vBulletin 3.0.7 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) announcement parameter to announcement.php, the (2) thread[forumid] or (3) criteria parameters to thread.php, (4) userid para...
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0 Beta 5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 3.0 Beta 4
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 2.3.2
NA
CVE-2005-3025
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.0.7 and previous versions allow remote malicious users to inject arbitrary web script or HTML via the loc parameter to (1) modcp/index.php or (2) admincp/index.php, or the ip parameter to (3) modcp/user.php or (4)...
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.3.0
Jelsoft Vbulletin 3.0.4
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.2
NA
CVE-2005-3021
image.php in vBulletin 3.0.9 and previous versions allows remote attackers with access to the administrator panel to upload arbitrary files via the upload action.
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.0
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.2
Jelsoft Vbulletin 3.0.3
Jelsoft Vbulletin 3.0 Beta 2
Jelsoft Vbulletin 3.0 Beta 3
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.1
Jelsoft Vbulletin 3.0.8
Jelsoft Vbulletin 3.0.9
Jelsoft Vbulletin 3.0 Gamma
Jelsoft Vbulletin 2.2.1
Jelsoft Vbulletin 2.2.2
Jelsoft Vbulletin 2.2.9
Jelsoft Vbulletin 2.3.0
NA
CVE-2005-3022
Multiple SQL injection vulnerabilities in vBulletin 3.0.9 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) announcement parameter to announcement.php, (2) userid parameter to user.php, (3) calendar parameter to admincalendar.php, (4...
Jelsoft Vbulletin 1.0.1
Jelsoft Vbulletin 2.0.3
Jelsoft Vbulletin 2.2.5
Jelsoft Vbulletin 2.2.6
Jelsoft Vbulletin 2.3.4
Jelsoft Vbulletin 3.0
Jelsoft Vbulletin 3.0.7
Jelsoft Vbulletin 3.0.8
Jelsoft Vbulletin 3.0 Gamma
Jelsoft Vbulletin 2.2.3
Jelsoft Vbulletin 2.2.4
Jelsoft Vbulletin 2.3.2
Jelsoft Vbulletin 2.3.3
Jelsoft Vbulletin 3.0.5
Jelsoft Vbulletin 3.0.6
Jelsoft Vbulletin 3.0 Beta 6
Jelsoft Vbulletin 3.0 Beta 7
Jelsoft Vbulletin 2.0 Rc2
Jelsoft Vbulletin 2.0 Rc3
Jelsoft Vbulletin 2.2.7
Jelsoft Vbulletin 2.2.8
Jelsoft Vbulletin 3.0.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4367
CVE-2024-35977
CVE-2023-49335
man-in-the-middle
CVE-2024-4947
CVE-2024-31714
memory leak
SQL
CVE-2024-35994
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »