Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, allows remote attackers to execute inject arbitrary PHP commands via the comma parameter.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-05-01 21:00
Updated : 2016-10-17 20:11
NVD link : CVE-2005-0429
Mitre link : CVE-2005-0429
JSON object : View
CWE
Products Affected
jelsoft
- vbulletin