CVE-2005-3023 Information
Feb 14, 2021
cve
Description
Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via certain arguments to (1) announcement.php (2) admincalendar.php (3) bbcode.php (4) cronadmin.php (5) email.php (6) faq.php (7) forum.php (8) image.php (9) language.php (10) ranks.php (11) replacement.php (12) replacement.php (13) template.php (14) template.php (15) usergroup.php or (16) usertitle.php.
Reference
http://marc.info/?l=bugtraq&m=112715150320677&w=2 http://morph3us.org/advisories/20050917-vbulletin-3.0.8.txt
Share on: