Vulnerabilities > Jelsoft > Vbulletin > 2.3.0

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-2288 Unspecified vulnerability in Jelsoft Vbulletin
Cross-site scripting (XSS) vulnerability in index.php in Jelsoft vBulletin allows remote attackers to spoof parts of a website via the loc parameter.
network
jelsoft
4.3
2004-12-31 CVE-2004-1824 Cross-Site Scripting vulnerability in VBulletin Memberlist.PHP
Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin before 3.0 allows remote attackers to inject arbitrary web script or HTML via the what parameter to memberlist.php.
network
jelsoft
4.3
2004-01-20 CVE-2004-0036 SQL Injection vulnerability in Jelsoft Vbulletin 2.3.0
SQL injection vulnerability in calendar.php for vBulletin Forum 2.3.x before 2.3.4 allows remote attackers to steal sensitive information via the eventid parameter.
network
low complexity
jelsoft
5.0