Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ultimate Bulletin Board MEDIUM 5.3
CVE-2022-25091

Infopop Ultimate Bulletin Board up to v5.47a was discovered to allow all messages posted inside private forums to be disclosed by unauthenticated use…

Fix: after 5.47a
Fix from $1,600 2023-04-27
Ultimate Bulletin Board HIGH 7.5
CVE-2005-1199

SQL injection vulnerability in printthread.php in UBB.Threads allows remote attackers to execute arbitrary SQL commands via the main parameter.

Patch available
Fix from $1,950 2005-05-02
Ultimate Bulletin Board MEDIUM 6.9
CVE-2003-0587

Cross-site scripting (XSS) vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.x allows remote authenticated users to execute arbitrary web scri…

Mitigation only
Fix from $1,600 2003-08-18
Ultimate Bulletin Board HIGH 7.5
CVE-2002-0223

Infopop UBB.Threads 5.4 and Wired Community Software WWWThreads 5.0 through 5.0.9 allows remote attackers to upload arbitrary files by using a filena…

Patch available
Fix from $1,950 2002-05-16
Ultimate Bulletin Board HIGH 7.5
CVE-2002-0118EPSS 7%

Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary scrip…

Patch available
Fix from $1,950 2002-03-25
Ultimate Bulletin Board MEDIUM 5.0
CVE-2001-0897

Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] t…

Mitigation only
Fix from $1,600 2001-11-15
Ultimate Bulletin Board HIGH 10.0
CVE-2000-0141

Infopop Ultimate Bulletin Board (UBB) allows remote attackers to execute commands via shell metacharacters in the topic hidden field.

Mitigation only
Fix from $1,950 2000-02-11
Ultimate Bulletin Board MEDIUM 5.0
CVE-1999-0854

Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP serve…

Mitigation only
Fix from $1,600 1999-11-01