PHP remote file inclusion vulnerability in ubbt.inc.php in UBBThreads 5.x and 6.x allows remote attackers to execute arbitrary PHP code via a URL in the (1) thispath or (2) configdir parameters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ubb.threads | Ubbcentral | 5.5.1 | 5.5.1 |
Ubb.threads | Ubbcentral | 6.5 | 6.5 |
Ubb.threads | Ubbcentral | 6.5.1 | 6.5.1 |
Ubb.threads | Ubbcentral | 6.1 | 6.1 |
Ubb.threads | Ubbcentral | 6.2.1 | 6.2.1 |
Ubb.threads | Ubbcentral | 6.0.1 | 6.0.1 |
Ubb.threads | Ubbcentral | 6.4.4 | 6.4.4 |
Ubb.threads | Ubbcentral | 6.4.3 | 6.4.3 |
Ubb.threads | Ubbcentral | 6.4.2 | 6.4.2 |
Ubb.threads | Ubbcentral | 6.4.1 | 6.4.1 |
Ubb.threads | Ubbcentral | 3.5 | 3.5 |
Ubb.threads | Ubbcentral | 3.4 | 3.4 |
Ubb.threads | Ubbcentral | 6.2.2 | 6.2.2 |
Ubb.threads | Ubbcentral | 6.2 | 6.2 |
Ubb.threads | Ubbcentral | 6.5.1.1 | 6.5.1.1 |
Ubb.threads | Ubbcentral | 5.0 | 5.0 |
Ubb.threads | Ubbcentral | 6.5.2 | 6.5.2 |
Ubb.threads | Ubbcentral | 6.0.3 | 6.0.3 |
Ubb.threads | Ubbcentral | 6.1.1 | 6.1.1 |
Ubb.threads | Ubbcentral | 6.4 | 6.4 |
Ubb.threads | Ubbcentral | 6.5.2_beta2 | 6.5.2_beta2 |
Ubb.threads | Ubbcentral | 6.3.1 | 6.3.1 |
Ubb.threads | Ubbcentral | 6.0.2 | 6.0.2 |
Ubb.threads | Ubbcentral | * | 6.5.3 |
Ubb.threads | Ubbcentral | 6.3 | 6.3 |
Ubb.threads | Ubbcentral | 6.2.3 | 6.2.3 |
Ubb.threads | Ubbcentral | 6.0 | 6.0 |