SQL injection vulnerability in global.php in Jelsoft vBulletin 2.x allows remote attackers to execute arbitrary SQL commands via the templatesused parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Vbulletin | Jelsoft | 2.3.0 (including) | 2.3.0 (including) |
| Vbulletin | Jelsoft | 2.3.2 (including) | 2.3.2 (including) |
| Vbulletin | Jelsoft | 2.3.3 (including) | 2.3.3 (including) |
| Vbulletin | Jelsoft | 2.3.4 (including) | 2.3.4 (including) |
| Vbulletin | Jelsoft | 2.3.8 (including) | 2.3.8 (including) |