CVE Vulnerabilities

CVE-2022-25091

Published: Apr 27, 2023 | Modified: May 05, 2023
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Infopop Ultimate Bulletin Board up to v5.47a was discovered to allow all messages posted inside private forums to be disclosed by unauthenticated users via the quote reply feature.

Affected Software

Name Vendor Start Version End Version
Ultimate_bulletin_board Infopop * 5.47a (including)

References