← Back

CVE-2015-3419

nvd nist
Published: Sep 19, 2017Modified: May 13, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

vBulletin 5.x through 5.1.6 allows remote authenticated users to bypass authorization checks and inject private messages into conversations via vectors related to an input validation failure.

Affected (23)

Products: Vbulletin: Vbulletin
1 product
Vbulletin
Configuration A
23 vulnerable
Vulnerable SoftwareAffected Versions
Vbulletin
Version 5.0.0 beta_11
Version 5.0.0 beta_28
Version 5.0.1
Version 5.0.2
Version 5.0.3
Version 5.0.4
Version 5.0.5
Version 5.1.0
Version 5.1.0 rc1
Version 5.1.1
Version 5.1.2 beta1
Version 5.1.2 rc1
Version 5.1.2 rc2
Version 5.1.3
Version 5.1.3 alpha5
Version 5.1.3 rc1
Version 5.1.4
Version 5.1.4 rc1
Version 5.1.5
Version 5.1.5 beta_1
Version 5.1.5 beta_3
Version 5.1.6
Version 5.1.6 beta_2

Timeline

No history available yet.