CVE-2005-0511

Scores

EPSS

0.822high82.2%
0%20%40%60%80%100%

Percentile: 82.2%

CVSS

7.5high2.0
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 2.0
7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Description

misc.php for vBulletin 3.0.6 and earlier, when “Add Template Name in HTML Comments” is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

Exploits

Exploit ID: 16896

Source: exploitdb

URL: https://www.exploit-db.com/exploits/16896

Exploit ID: 832

Source: exploitdb

URL: https://www.exploit-db.com/exploits/832

Vulnerable Software (1)

Type: Configuration

Vendor: *

Product: vbulletin

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:jelsoft:vbulletin:2.0:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:jelsoft:vbulletin:2.0.1:*:*:*:*:*:*:*", ...

Source: nvd

End of list