Vulnerability Details CVE-2005-2059
Multiple cross-site request forgery (CSRF) vulnerabilities in (1) addaddress.php, (2) toggleignore.php, (3) removeignore.php, and (4) removeaddress.php in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to modify settings as another user via a link or IMG tag.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 63.0%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 5.0
Products affected by CVE-2005-2059
-
cpe:2.3:a:ubbcentral:ubb.threads:-
-
cpe:2.3:a:ubbcentral:ubb.threads:6.0.0
-
cpe:2.3:a:ubbcentral:ubb.threads:6.0.1
-
cpe:2.3:a:ubbcentral:ubb.threads:6.0.2
-
cpe:2.3:a:ubbcentral:ubb.threads:6.0.3
-
cpe:2.3:a:ubbcentral:ubb.threads:6.1.0
-
cpe:2.3:a:ubbcentral:ubb.threads:6.1.1
-
cpe:2.3:a:ubbcentral:ubb.threads:6.2.0
-
cpe:2.3:a:ubbcentral:ubb.threads:6.2.1
-
cpe:2.3:a:ubbcentral:ubb.threads:6.2.2
-
cpe:2.3:a:ubbcentral:ubb.threads:6.2.3
-
cpe:2.3:a:ubbcentral:ubb.threads:6.3.0
-
cpe:2.3:a:ubbcentral:ubb.threads:6.3.1
-
cpe:2.3:a:ubbcentral:ubb.threads:6.3.2
-
cpe:2.3:a:ubbcentral:ubb.threads:6.4.0
-
cpe:2.3:a:ubbcentral:ubb.threads:6.4.1
-
cpe:2.3:a:ubbcentral:ubb.threads:6.4.2
-
cpe:2.3:a:ubbcentral:ubb.threads:6.4.3
-
cpe:2.3:a:ubbcentral:ubb.threads:6.4.4
-
cpe:2.3:a:ubbcentral:ubb.threads:6.5.0
-
cpe:2.3:a:ubbcentral:ubb.threads:6.5.1
-
cpe:2.3:a:ubbcentral:ubb.threads:6.5.1.1