Vulnerability Details CVE-2005-0429
Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, allows remote attackers to execute inject arbitrary PHP commands via the comma parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.04
EPSS Ranking 87.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2005-0429
-
cpe:2.3:a:jelsoft:vbulletin:3.0
-
cpe:2.3:a:jelsoft:vbulletin:3.0.1
-
cpe:2.3:a:jelsoft:vbulletin:3.0.2
-
cpe:2.3:a:jelsoft:vbulletin:3.0.3
-
cpe:2.3:a:jelsoft:vbulletin:3.0.4