vubb records
7 published records for vendor vubb.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Attack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2006-0962Proof of concept | SQL injection vulnerability in vuBB 0.2 allows remote attackers to execute arbitrary SQL commands via the pass parameter in a cookie.vubb · vubb | High7.5 | — | 2.5% | Mar 2, 2006 |
30Monitor | CVE-2005-4612No exploit | Multiple SQL injection vulnerabilities in VUBB alpha rc1 allow remote attackers to execute arbitrary SQL commands via the (1) f parameter tovubb · vubb | High7.5 | — | 1.3% | Dec 31, 2005 |
30Monitor | CVE-2006-6230No exploit | SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a vubb · vubb | High7.5 | — | 1.2% | Dec 1, 2006 |
20Monitor | CVE-2006-6231No exploit | vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php, which leaks the pavubb · vubb | Medium5.0 | — | 1.3% | Dec 1, 2006 |
20Monitor | CVE-2005-3513No exploit | index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f parvubb · vubb | Medium5.0 | — | 1.2% | Nov 6, 2005 |
18Monitor | CVE-2005-3512Proof of concept | Cross-site scripting (XSS) vulnerability in index.php in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via tvubb · vubb | Medium4.3 | — | 1.7% | Nov 6, 2005 |
17Monitor | CVE-2005-4613No exploit | Cross-site scripting (XSS) vulnerability in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified fivubb · vubb | Medium4.3 | — | 1.2% | Dec 31, 2005 |
- CVE-2006-096231Monitor
SQL injection vulnerability in vuBB 0.2 allows remote attackers to execute arbitrary SQL commands via the pass parameter in a cookie.
HighCVSS 7.5Proof of conceptEPSS 3%vubb · vubbMar 2, 2006
- CVE-2005-461230Monitor
Multiple SQL injection vulnerabilities in VUBB alpha rc1 allow remote attackers to execute arbitrary SQL commands via the (1) f parameter to
HighCVSS 7.5No exploitEPSS 1%vubb · vubbDec 31, 2005
- CVE-2006-623030Monitor
SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a
HighCVSS 7.5No exploitEPSS 1%vubb · vubbDec 1, 2006
- CVE-2006-623120Monitor
vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php, which leaks the pa
MediumCVSS 5.0No exploitEPSS 1%vubb · vubbDec 1, 2006
- CVE-2005-351320Monitor
index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f par
MediumCVSS 5.0No exploitEPSS 1%vubb · vubbNov 6, 2005
- CVE-2005-351218Monitor
Cross-site scripting (XSS) vulnerability in index.php in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via t
MediumCVSS 4.3Proof of conceptEPSS 2%vubb · vubbNov 6, 2005
- CVE-2005-461317Monitor
Cross-site scripting (XSS) vulnerability in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified fi
MediumCVSS 4.3No exploitEPSS 1%vubb · vubbDec 31, 2005