vBulletin 5.6.3

CPE Details

vBulletin 5.6.3
5.6.3
2020-09-03
18h20 +00:00
2020-09-03
18h20 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:vbulletin:vbulletin:5.6.3:*:*:*:*:*:*:*

Informations

Vendor

vbulletin

Product

vbulletin

Version

5.6.3

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-39777 2023-09-15 22h00 +00:00 A cross-site scripting (XSS) vulnerability in the Admin Control Panel of vBulletin 5.7.5 and 6.0.0 allows attackers to execute arbitrary web scripts or HTML via the /login.php?do=login url parameter.
5.4
Moyen
CVE-2020-25115 2020-09-03 15h20 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via an Occupation Title or Description to User Profile Field Manager.
4.8
Moyen
CVE-2020-25116 2020-09-03 15h20 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via an Announcement Title to Channel Manager.
4.8
Moyen
CVE-2020-25117 2020-09-03 15h20 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Junior Member Title to User Title Manager.
4.8
Moyen
CVE-2020-25118 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Style Options Settings Title to Styles Manager.
4.8
Moyen
CVE-2020-25119 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Title of a Child Help Item in the Login/Logoff part of the User Manual.
4.8
Moyen
CVE-2020-25120 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via the admincp/search.php?do=dosearch URI.
4.8
Moyen
CVE-2020-25121 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via the Paid Subscription Email Notification field in the Options.
4.8
Moyen
CVE-2020-25122 2020-09-03 15h19 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Rank Type to User Rank Manager.
4.8
Moyen
CVE-2020-25123 2020-09-03 15h18 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via a Smilie Title to Smilies Manager.
4.8
Moyen
CVE-2020-25124 2020-09-03 15h18 +00:00 The Admin CP in vBulletin 5.6.3 allows XSS via an admincp/attachment.php&do=rebuild&type= URI.
4.8
Moyen
CVE-2010-1077 2010-03-23 18h00 +00:00 Directory traversal vulnerability in vbseo.php in Crawlability vBSEO plugin 3.1.0 for vBulletin allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the vbseourl parameter.
6.8