Total vulnerabilities in the database
SQL injection vulnerability in calendar.php in vBulletin 3.0.x allows remote attackers to execute arbitrary SQL commands via the eventid parameter. NOTE: the affected version has been disputed by the vendor. It appears that this is the same issue as CVE-2004-0036, which was fixed in 2.3.4.
Software | From | Fixed in |
---|---|---|
jelsoft / vbulletin | 3.0.4 | 3.0.4.x |
jelsoft / vbulletin | 3.0.0_rc4 | 3.0.0_rc4.x |
jelsoft / vbulletin | 3.0.1 | 3.0.1.x |
jelsoft / vbulletin | 3.0.0_beta_2 | 3.0.0_beta_2.x |
jelsoft / vbulletin | 3.0.6 | 3.0.6.x |
jelsoft / vbulletin | 3.0.0_can4 | 3.0.0_can4.x |
jelsoft / vbulletin | 3.0_beta_2 | 3.0_beta_2.x |
jelsoft / vbulletin | 3.0.0 | 3.0.0.x |
jelsoft / vbulletin | 3.0.2 | 3.0.2.x |
jelsoft / vbulletin | 3.0.12 | 3.0.12.x |
jelsoft / vbulletin | 3.0.3 | 3.0.3.x |
jelsoft / vbulletin | 3.0.5 | 3.0.5.x |
jelsoft / vbulletin | 3.0 | 3.0.x |