Lucene search

K

Jelsoft Security Vulnerabilities

cve
cve

CVE-2004-1824

Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin before 3.0 allows remote attackers to inject arbitrary web script or HTML via the what parameter to...

5.7AI Score

0.011EPSS

2005-05-10 04:00 AM
29
cve
cve

CVE-2004-1823

Multiple cross-site scripting (XSS) vulnerabilities in Jelsoft vBulletin 2.0 beta 3 through 3.0 can4 allows remote attackers to inject arbitrary web script or HTML via the (1) page parameter to showthread.php or (2) order parameter to...

6AI Score

0.017EPSS

2005-05-10 04:00 AM
14
cve
cve

CVE-2002-1660

calendar.php in vBulletin before 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the command...

8.1AI Score

0.012EPSS

2005-05-10 04:00 AM
55
cve
cve

CVE-2005-0429

Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, allows remote attackers to execute inject arbitrary PHP commands via the comma...

7.7AI Score

0.011EPSS

2005-05-02 04:00 AM
34
cve
cve

CVE-2005-0511

misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template...

7.5AI Score

0.891EPSS

2005-02-23 05:00 AM
23
cve
cve

CVE-2004-1515

SQL injection vulnerability in (1) ttlast.php and (2) last10.php in vBulletin 3.0.x allows remote attackers to execute arbitrary SQL statements via the fsel parameter, as demonstrated using...

8.6AI Score

0.003EPSS

2005-02-19 05:00 AM
27
cve
cve

CVE-2004-0620

Cross-site scripting (XSS) vulnerability in (1) newreply.php or (2) newthread.php in vBulletin 3.0.1 allows remote attackers to inject arbitrary HTML or script as other users via the...

5.8AI Score

0.005EPSS

2004-12-06 05:00 AM
22
cve
cve

CVE-2004-0036

SQL injection vulnerability in calendar.php for vBulletin Forum 2.3.x before 2.3.4 allows remote attackers to steal sensitive information via the eventid...

7.2AI Score

0.039EPSS

2004-09-01 04:00 AM
31
cve
cve

CVE-2003-0295

Cross-site scripting (XSS) vulnerability in private.php for vBulletin 3.0.0 Beta 2 allows remote attackers to inject arbitrary web script and HTML via the "Preview Message"...

6AI Score

0.009EPSS

2003-06-16 04:00 AM
18
cve
cve

CVE-2001-0475

index.php in Jelsoft vBulletin does not properly initialize a PHP variable that is used to store template information, which allows remote attackers to execute arbitrary PHP code via special characters in the templatecache...

7.5AI Score

0.009EPSS

2001-09-18 04:00 AM
31
Total number of security vulnerabilities60