Infopop
Infopop Ultimate Bulletin Board: vulnerabilidades y CVE
Infopop Ultimate Bulletin Board tiene 8 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE8
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-25091 | Media (5.3) | 0.64% | — | 27 abr 2023 | Infopop Ultimate Bulletin Board up to v5.47a was discovered to allow all messages posted inside private forums to be disclosed by unauthenticated users via the quote reply feature. |
| CVE-2005-1199 | Alta (7.5) | 1.2% | — | 2 may 2005 | SQL injection vulnerability in printthread.php in UBB.Threads allows remote attackers to execute arbitrary SQL commands via the main parameter. |
| CVE-2003-0587 | Media (6.9) | 0.56% | — | 18 ago 2003 | Cross-site scripting (XSS) vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.x allows remote authenticated users to execute arbitrary web script and gain administrative access via the "displayed name" attribute… |
| CVE-2002-0223 | Alta (7.5) | 1.8% | — | 16 may 2002 | Infopop UBB.Threads 5.4 and Wired Community Software WWWThreads 5.0 through 5.0.9 allows remote attackers to upload arbitrary files by using a filename that contains an accepted extension, but ends in a different… |
| CVE-2002-0118 | Alta (7.5) | 7.1% | — | 25 mar 2002 | Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an… |
| CVE-2001-0897 | Media (5) | 1.9% | — | 15 nov 2001 | Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field. |
| CVE-2000-0141 | Alta (10) | 3.5% | — | 11 feb 2000 | Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field. |
| CVE-1999-0854 | Media (5) | 1.3% | — | 1 nov 1999 | Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP server attempts to execute the file. |