Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ultimate Php Board MEDIUM 6.5
CVE-2006-3208

Direct static code injection vulnerability in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote authenticated administrators to execute arbitr…

No fix yet
Fix from $1,600 2006-06-24
Ultimate Php Board MEDIUM 5.0
CVE-2006-3204

Ultimate PHP Board (UPB) 1.9.6 and earlier uses a cryptographically weak block cipher with a large key collision space, which allows remote attackers…

No fix yet
Fix from $1,600 2006-06-24
Ultimate Php Board MEDIUM 5.0
CVE-2006-3205

Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to gain access via modified user_env, pass_env, power_env, and id_env parameters i…

Mitigation only
Fix from $1,600 2006-06-24
Ultimate Php Board MEDIUM 5.0
CVE-2006-3206

register.php in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to create arbitrary accounts via the "[NR]" sequence in the signat…

Mitigation only
Fix from $1,600 2006-06-24
Ultimate Php Board MEDIUM 5.0
CVE-2006-3207

Directory traversal vulnerability in newpost.php in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to overwrite arbitrary files v…

Mitigation only
Fix from $1,600 2006-06-24
Ultimate Php Board MEDIUM 5.0
CVE-2005-2030

Ultimate PHP Board (UPB) 1.9.6 GOLD uses weak encryption for passwords in the users.dat file, which allows attackers to easily decrypt the passwords …

No fix yet
Fix from $1,600 2005-06-16
Ultimate Php Board HIGH 7.5
CVE-2005-1615

viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 may allow remote attackers to read sensitive data via the postorder parameter, which is n…

Mitigation only
Fix from $1,950 2005-05-16
Ultimate Php Board HIGH 7.5
CVE-2005-1616

viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 allows remote attackers to obtain sensitive information via an invalid (1) id or possibly…

Mitigation only
Fix from $1,950 2005-05-16
Ultimate Php Board MEDIUM 6.8
CVE-2005-1614

Cross-site scripting (XSS) vulnerability in viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 allows remote attackers to inject arbitrary w…

No fix yet
Fix from $1,600 2005-05-16
Ultimate Php Board MEDIUM 5.0
CVE-2002-2276

Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the …

No fix yet
Fix from $1,600 2002-12-31
Ultimate Php Board MEDIUM 5.0
CVE-2002-2322

Ultimate PHP Board (UPB) 1.0b stores the users.dat data file under the web root with insufficient access control, which allows remote attackers to ob…

Mitigation only
Fix from $1,600 2002-12-31