7.5

CVE-2006-5104

Exploit
SQL injection vulnerability in global.php in Jelsoft vBulletin 2.x allows remote attackers to execute arbitrary SQL commands via the templatesused parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jelsoft ≫ Vbulletin Version 2.3.0
Jelsoft ≫ Vbulletin Version 2.3.2
Jelsoft ≫ Vbulletin Version 2.3.3
Jelsoft ≫ Vbulletin Version 2.3.4
Jelsoft ≫ Vbulletin Version 2.3.8
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.09% 0.611
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://securityreason.com/securityalert/1661
http://www.securityfocus.com/archive/1/447010/100/0/threaded
http://www.securityfocus.com/bid/20214
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/29174