Skip to content
Noroxi

ubbcentral records

20 published records for vendor ubbcentral.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
11
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

20 records
  • CVE-2008-6970
    32Monitor

    SQL injection vulnerability in dosearch.inc.php in UBB.threads 7.3.1 and earlier allows remote attackers to execute arbitrary SQL commands v

    HighCVSS 7.5Proof of conceptEPSS 7%

    ubbcentral · ubb.threadsAug 13, 2009

  • CVE-2004-1622
    31Monitor

    SQL injection vulnerability in dosearch.php in UBB.threads 3.4.x allows remote attackers to execute arbitrary SQL statements via the Name pa

    HighCVSS 7.5Proof of conceptEPSS 2%

    ubbcentral · ubb.threadsOct 21, 2004

  • CVE-2006-5136
    30Monitor

    Multiple PHP remote file inclusion vulnerabilities in ubbt.inc.php in Groupee UBB.threads 6.5.1.1 allow remote attackers to execute arbitrar

    HighCVSS 7.5No exploitEPSS 2%

    ubbcentral · ubb.threadsOct 3, 2006

  • CVE-2006-0545
    30Monitor

    SQL injection vulnerability in showflat.php in Groupee (formerly known as Infopop) UBB.threads 6.3 and earlier allows remote attackers to ex

    HighCVSS 7.5Proof of conceptEPSS 1%

    ubbcentral · ubb.threadsFeb 3, 2006

  • CVE-2005-2058
    30Monitor

    Multiple SQL injection vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5Proof of conceptEPSS 1%

    ubbcentral · ubb.threadsJun 29, 2005

  • CVE-2005-0726
    30Monitor

    SQL injection vulnerability in editpost.php in UBB.threads 6.0 allows remote attackers to execute arbitrary SQL commands via the Number para

    HighCVSS 7.5No exploitEPSS 1%

    ubbcentral · ubb.threadsMay 2, 2005

  • CVE-2007-1956
    30Monitor

    SQL injection vulnerability in ubbthreads.php in Groupee UBB.threads 6.1.1 and earlier allows remote attackers to execute arbitrary SQL comm

    HighCVSS 7.5Proof of conceptEPSS 1%

    ubbcentral · ubb.threadsApr 10, 2007

  • CVE-2005-2057
    27Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web

    MediumCVSS 6.8No exploitEPSS 1%

    ubbcentral · ubb.threadsJun 29, 2005

  • CVE-2005-2059
    26Monitor

    Multiple cross-site request forgery (CSRF) vulnerabilities in (1) addaddress.php, (2) toggleignore.php, (3) removeignore.php, and (4) remove

    MediumCVSS 6.5No exploitEPSS 1%

    ubbcentral · ubb.threadsJun 29, 2005

  • CVE-2006-2568
    22Monitor

    PHP remote file inclusion vulnerability in addpost_newpoll.php in UBB.threads 6.4 through 6.5.2 and 6.5.1.1 (trial) allows remote attackers

    MediumCVSS 5.1Proof of conceptEPSS 8%

    ubbcentral · ubb.threadsMay 24, 2006

  • CVE-2006-2675
    21Monitor

    PHP remote file inclusion vulnerability in ubbt.inc.php in UBBThreads 5.x and 6.x allows remote attackers to execute arbitrary PHP code via

    MediumCVSS 5.1Proof of conceptEPSS 3%

    ubbcentral · ubb.threadsMay 30, 2006

  • CVE-2006-5137
    21Monitor

    Multiple direct static code injection vulnerabilities in Groupee UBB.threads 6.5.1.1 allow remote attackers to (1) inject PHP code via a the

    MediumCVSS 5.1Proof of conceptEPSS 2%

    ubbcentral · ubb.threadsOct 3, 2006

  • CVE-2006-5138
    20Monitor

    Groupee UBB.threads 6.5.1.1 allows remote attackers to obtain sensitive information via a direct request for cron/php/subscriptions.php, whi

    MediumCVSS 5.0No exploitEPSS 1%

    ubbcentral · ubb.threadsOct 3, 2006

  • CVE-2005-2061
    20Monitor

    Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by

    MediumCVSS 5.0No exploitEPSS 1%

    ubbcentral · ubb.threadsJun 29, 2005

  • CVE-2005-2060
    20Monitor

    Multiple HTTP Response Splitting vulnerabilities in (1) toggleshow.php, (2) togglecats.php, and (3) showprofile.php in Infopop UBB.Threads b

    MediumCVSS 5.0No exploitEPSS 1%

    ubbcentral · ubb.threadsJun 29, 2005

  • CVE-2006-1423
    20Monitor

    SQL injection vulnerability in showflat.php in UBB.threads 5.5.1, 6.0 br5, 6.0.1, 6.0.2, and earlier, allows remote attackers to execute arb

    MediumCVSS 5.0No exploitEPSS 1%

    ubbcentral · ubb.threadsMar 28, 2006

  • CVE-2004-2510
    18Monitor

    Cross-site scripting (XSS) vulnerability in showflat.php in Infopop UBB.Threads before 6.5 allows remote attackers to inject arbitrary web s

    MediumCVSS 4.3Proof of conceptEPSS 4%

    ubbcentral · ubb.threadsDec 31, 2004

  • CVE-2006-2755
    18Monitor

    Cross-site scripting (XSS) vulnerability in index.php in UBBThreads 5.x and earlier allows remote attackers to inject arbitrary web script o

    MediumCVSS 4.3Proof of conceptEPSS 2%

    ubbcentral · ubb.threadsJun 1, 2006

  • CVE-2004-2509
    18Monitor

    Cross-site scripting (XSS) vulnerabilities in (1) calendar.php, (2) login.php, and (3) online.php in Infopop UBB.Threads 6.2.3 and 6.5 allow

    MediumCVSS 4.3Proof of conceptEPSS 2%

    ubbcentral · ubb.threadsDec 31, 2004

  • CVE-2012-5104
    18Monitor

    Cross-site scripting (XSS) vulnerability in forums/ubbthreads.php in UBB.threads 7.5.6 and earlier allows remote attackers to inject arbitra

    MediumCVSS 4.3Proof of conceptEPSS 2%

    ubbcentral · ubb.threadsSep 23, 2012