7.5
CVSSv2

CVE-2002-1660

Published: 31/12/2002 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

calendar.php in vBulletin prior to 2.2.0 allows remote malicious users to execute arbitrary commands via shell metacharacters in the command parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

jelsoft vbulletin

Exploits

source: wwwsecurityfocuscom/bid/5820/info A remote command execution vulnerability has been reported for vBulletin The vulnerability is due to vBulletin failing to properly sanitize user-supplied input from URI parameters An attacker can exploit this vulnerability to execute malicious commands on the vulnerable system wwwexa ...