vBulletin 5.6.3

CPE Details

vBulletin 5.6.3
5.6.3
2020-09-03
18h20 +00:00
2020-09-03
18h20 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:vbulletin:vbulletin:5.6.3:*:*:*:*:*:*:*

Informations

Vendor

vbulletin

Product

vbulletin

Version

5.6.3

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-39777 2023-09-15 22h00 +00:00 A cross-site scripting (XSS) vulnerability in the Admin Control Panel of vBulletin 5.7.5 and 6.0.0 allows attackers to execute arbitrary web scripts or HTML via the /login.php?do=login url parameter.
5.4
Medium
CVE-2020-25115 2020-09-03 15h20 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via an Occupation Title or Description to User Profile Field Manager.
4.8
Medium
CVE-2020-25116 2020-09-03 15h20 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via an Announcement Title to Channel Manager.
4.8
Medium
CVE-2020-25117 2020-09-03 15h20 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Junior Member Title to User Title Manager.
4.8
Medium
CVE-2020-25118 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Style Options Settings Title to Styles Manager.
4.8
Medium
CVE-2020-25119 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Title of a Child Help Item in the Login/Logoff part of the User Manual.
4.8
Medium
CVE-2020-25120 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via the admincp/search.php?do=dosearch URI.
4.8
Medium
CVE-2020-25121 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via the Paid Subscription Email Notification field in the Options.
4.8
Medium
CVE-2020-25122 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Rank Type to User Rank Manager.
4.8
Medium
CVE-2020-25123 2020-09-03 15h18 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Smilie Title to Smilies Manager.
4.8
Medium
CVE-2020-25124 2020-09-03 15h18 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via an admincp/attachment.php&do=rebuild&type= URI.
4.8
Medium
CVE-2010-1077 2010-03-23 18h00 +00:00 Directory traversal vulnerability in vbseo.php in Crawlability vBSEO plugin 3.1.0 for vBulletin allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the vbseourl parameter.
6.8