5
CVSSv2

CVE-2002-2235

Published: 31/12/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

member2.php in vBulletin 2.2.9 and previous versions does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks.

Vulnerable Product Search on Vulmon Subscribe to Product

jelsoft vbulletin 2.0.2

jelsoft vbulletin 2.2.0

jelsoft vbulletin 2.2.1

jelsoft vbulletin 2.2.2

jelsoft vbulletin 2.0.1

jelsoft vbulletin 2.2.3

jelsoft vbulletin 2.2.5

jelsoft vbulletin 2.2.7

jelsoft vbulletin 2.2.8

jelsoft vbulletin 2.2.9

jelsoft vbulletin 2.2.9_can

jelsoft vbulletin 2.0

jelsoft vbulletin 2.2.4

jelsoft vbulletin 2.2.6

Exploits

source: wwwsecurityfocuscom/bid/6246/info Due to insufficient sanitization of user supplied values, it is possible to exploit a vulnerability in VBulletin By passing an invalid value to a variable located in 'members2php', it is possible to generate an error page which will include attacker-supplied HTML code which will be executed in a ...