Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.8
CVE-2006-7169EPSS 5%
PHP remote file inclusion vulnerability in includes/header_simple.php in Ultimate PHP Board (UPB) 2.0 and earlier allows remote attackers to execute …
Ultimate Php Board
after 2.0
HIGH 7.5
CVE-2006-6790
Direct static code injection vulnerability in chat/login.php in Ultimate PHP Board (UPB) 2.0b1 and earlier allows remote attackers to inject arbitrar…
Ultimate Php Board
after 2.0_beta_1
HIGH 10.0
CVE-2006-3203
The installation of Ultimate PHP Board (UPB) 1.9.6 and earlier includes a default administrator login account and password, which allows remote attac…
Ultimate Php Board
Patch available
MEDIUM 6.5
CVE-2006-3208
Direct static code injection vulnerability in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote authenticated administrators to execute arbitr…
Ultimate Php Board
No fix yet
MEDIUM 5.0
CVE-2006-3204
Ultimate PHP Board (UPB) 1.9.6 and earlier uses a cryptographically weak block cipher with a large key collision space, which allows remote attackers…
Ultimate Php Board
No fix yet
MEDIUM 5.0
CVE-2006-3205
Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to gain access via modified user_env, pass_env, power_env, and id_env parameters i…
Ultimate Php Board
Mitigation only
MEDIUM 5.0
CVE-2006-3206
register.php in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to create arbitrary accounts via the "[NR]" sequence in the signat…
Ultimate Php Board
Mitigation only
MEDIUM 5.0
CVE-2006-3207
Directory traversal vulnerability in newpost.php in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to overwrite arbitrary files v…
Ultimate Php Board
Mitigation only
MEDIUM 5.0
CVE-2005-2004
Multiple cross-site scripting vulnerabilities in Ultimate PHP Board (UPB) 1.9.6 GOLD and earlier allow remote attackers to inject arbitrary web scrip…
Ultimate Php Board
Patch available
MEDIUM 5.0
CVE-2005-2003
Ultimate PHP Board (UPB) 1.9.6 GOLD allows remote attackers to obtain sensitive information via an invalid (zero) id parameter to (1) viewtopic.php, …
Ultimate Php Board
Patch available
MEDIUM 5.0
CVE-2005-2005
Ultimate PHP Board (UPB) 1.9.6 GOLD and earlier stores the users.dat file under the web document root with insufficient access control, which allows …
Ultimate Php Board
Patch available
MEDIUM 5.0
CVE-2005-2030
Ultimate PHP Board (UPB) 1.9.6 GOLD uses weak encryption for passwords in the users.dat file, which allows attackers to easily decrypt the passwords …
Ultimate Php Board
No fix yet
HIGH 7.5
CVE-2005-1615
viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 may allow remote attackers to read sensitive data via the postorder parameter, which is n…
Ultimate Php Board
Mitigation only
HIGH 7.5
CVE-2005-1616
viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 allows remote attackers to obtain sensitive information via an invalid (1) id or possibly…
Ultimate Php Board
Mitigation only
MEDIUM 6.8
CVE-2005-1614
Cross-site scripting (XSS) vulnerability in viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 allows remote attackers to inject arbitrary w…
Ultimate Php Board
No fix yet
MEDIUM 5.0
CVE-2002-2276
Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the …
Ultimate Php Board
No fix yet
MEDIUM 5.0
CVE-2002-2322
Ultimate PHP Board (UPB) 1.0b stores the users.dat data file under the web root with insufficient access control, which allows remote attackers to ob…
Ultimate Php Board
Mitigation only