Skip to content
Noroxi

vubb records

7 published records for vendor vubb.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      7 records
      • CVE-2006-0962
        31Monitor

        SQL injection vulnerability in vuBB 0.2 allows remote attackers to execute arbitrary SQL commands via the pass parameter in a cookie.

        HighCVSS 7.5Proof of conceptEPSS 3%

        vubb · vubbMar 2, 2006

      • CVE-2005-4612
        30Monitor

        Multiple SQL injection vulnerabilities in VUBB alpha rc1 allow remote attackers to execute arbitrary SQL commands via the (1) f parameter to

        HighCVSS 7.5No exploitEPSS 1%

        vubb · vubbDec 31, 2005

      • CVE-2006-6230
        30Monitor

        SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a

        HighCVSS 7.5No exploitEPSS 1%

        vubb · vubbDec 1, 2006

      • CVE-2006-6231
        20Monitor

        vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php, which leaks the pa

        MediumCVSS 5.0No exploitEPSS 1%

        vubb · vubbDec 1, 2006

      • CVE-2005-3513
        20Monitor

        index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f par

        MediumCVSS 5.0No exploitEPSS 1%

        vubb · vubbNov 6, 2005

      • CVE-2005-3512
        18Monitor

        Cross-site scripting (XSS) vulnerability in index.php in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via t

        MediumCVSS 4.3Proof of conceptEPSS 2%

        vubb · vubbNov 6, 2005

      • CVE-2005-4613
        17Monitor

        Cross-site scripting (XSS) vulnerability in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified fi

        MediumCVSS 4.3No exploitEPSS 1%

        vubb · vubbDec 31, 2005