Vulnerabilities > Vbulletin > Vbulletin > 4.1.10

DATE CVE VULNERABILITY TITLE RISK
2012-08-28 CVE-2012-4686 SQL Injection vulnerability in Vbulletin 4.1.10
SQL injection vulnerability in announcement.php in vBulletin 4.1.10 allows remote attackers to execute arbitrary SQL commands via the announcementid parameter.
network
low complexity
vbulletin CWE-89
7.5