CVE Vulnerabilities

CVE-2005-0429

Published: May 02, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, allows remote attackers to execute inject arbitrary PHP commands via the comma parameter.

Affected Software

Name Vendor Start Version End Version
Vbulletin Jelsoft 3.0 (including) 3.0 (including)
Vbulletin Jelsoft 3.0.1 (including) 3.0.1 (including)
Vbulletin Jelsoft 3.0.2 (including) 3.0.2 (including)
Vbulletin Jelsoft 3.0.3 (including) 3.0.3 (including)
Vbulletin Jelsoft 3.0.4 (including) 3.0.4 (including)

References