4.3
CVSSv2

CVE-2010-3713

Published: 28/10/2010 Updated: 28/10/2010
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

rss.php in UseBB prior to 1.0.11 does not properly handle forum configurations in which a user has the view permission but not the read permission, which allows remote malicious users to bypass intended access restrictions by reading a forum feed in combination with a topic feed.

Vulnerable Product Search on Vulmon Subscribe to Product

usebb usebb 1.0.5

usebb usebb 1.0.7

usebb usebb 0.3

usebb usebb 0.3.1

usebb usebb 0.2.3

usebb usebb 0.6

usebb usebb 1.0

usebb usebb 1.0.4

usebb usebb 0.4

usebb usebb 0.2.2

usebb usebb 0.5.1

usebb usebb 0.7

usebb usebb

usebb usebb 0.1.1

usebb usebb 0.1

usebb usebb 1.0.9

usebb usebb 1.0.2

usebb usebb 1.0.1

usebb usebb 0.4.1

usebb usebb 0.5

usebb usebb 0.2

usebb usebb 1.0.3

usebb usebb 1.0.6

usebb usebb 0.3.2

usebb usebb 0.2.1