Known Vulnerabilities for products from Usebb
Listed below are 12 of the newest known vulnerabilities associated with the vendor "Usebb".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-8088 json | panel_login.php in UseBB 1.0.12 allows type juggling for login bypass because != is used instead of !== for password hashes, ... | 9.8 - CRITICAL | 2020-01-27 | 2021-07-21 |
| CVE-2011-3612 json | Cross-Site Request Forgery (CSRF) vulnerability exists in panel.php in UseBB before 1.0.12. | 8.8 - HIGH | 2020-01-22 | 2020-01-24 |
| CVE-2011-3611 json | A File Inclusion vulnerability exists in act parameter to admin.php in UseBB before 1.0.12. | 7.2 - HIGH | 2020-01-22 | 2020-01-29 |
| CVE-2010-3713 json | rss.php in UseBB before 1.0.11 does not properly handle forum configurations in which a user has the view permission but not ... | Not Provided | 2010-10-28 | 2026-04-29 |
| CVE-2009-4041 json | UseBB 1.0.9 before 1.0.10 allows remote attackers to cause a denial of service (infinite loop) via crafted BBCode tags. | Not Provided | 2009-11-20 | 2026-04-23 |
| CVE-2007-3963 json | Multiple cross-site scripting (XSS) vulnerabilities in UseBB 1.0.7, and possibly other 1.0.x versions, allow remote attackers... | Not Provided | 2007-07-25 | 2026-04-23 |
| CVE-2007-2066 json | UseBB before 1.0.6 allows remote attackers to obtain sensitive information via a request with unspecified GET or POST paramet... | Not Provided | 2007-04-18 | 2026-04-23 |
| CVE-2006-2525 json | SQL injection vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to execute arbitrary SQL commands via the me... | 6.4 - MEDIUM | 2006-05-22 | 2017-07-20 |
| CVE-2006-2524 json | Cross-site scripting (XSS) vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to inject arbitrary web script ... | 6.8 - MEDIUM | 2006-05-22 | 2017-07-20 |
| CVE-2005-4193 json | Cross-site scripting (XSS) vulnerability in UseBB before 0.7 allows remote attackers to inject arbitrary web script or HTML v... | Not Provided | 2005-12-13 | 2025-04-03 |
| CVE-2005-2439 json | SQL injection vulnerability in UseBB 0.5.1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute... | Not Provided | 2005-08-03 | 2025-04-03 |
| CVE-2005-2438 json | Cross-site scripting (XSS) vulnerability in UseBB 0.5.1 and earlier allows remote attackers to inject arbitrary Javascript vi... | Not Provided | 2005-08-03 | 2025-04-03 |
Known software with vulnerabilities from Usebb
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Usebb | Usebb | 0.1 |