vendor:
vBulletin
by:
ReZEN
7,5
CVSS
HIGH
Remote File Inclusion
98
CWE
Product Name: vBulletin
Affected Version From: vBulletin 3.5.4
Affected Version To: vBulletin 3.5.4
Patch Exists: YES
Related CWE: CVE-2006-1790
CPE: a:vbulletin:vbulletin
Metasploit:
https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2006-0329/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2006-0328/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2006-1790/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2006-0329/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-CESA-2006-0330/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2006-1790/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2006-0330/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2006-0328/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2006
vbulletin ImpEx Remote File Inclusion Exploit
This exploit allows an attacker to execute arbitrary code on a vulnerable server by including a malicious file via a vulnerable script. The vulnerable script is located in the 'impex' directory of the vBulletin installation. The attacker can use this vulnerability to execute arbitrary code on the vulnerable server.
Mitigation:
The vulnerability can be mitigated by restricting access to the 'impex' directory and by disabling remote file inclusion.