CVE-2020-17496
vBulletin PHP Module Remote Code Execution Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
3Exploited in Wild
YesDecision
Descriptions
vBulletin 5.5.4 through 5.6.2 allows remote command execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panel request. NOTE: this issue exists because of an incomplete fix for CVE-2019-16759.
vBulletin versiones 5.5.4 hasta 5.6.2, permite una ejecución de comandos remota por medio de datos de subWidgets diseñados en una petición de ajax /render/widget_tabbedcontainer_tab_panel. NOTA: este problema se presenta debido a una corrección incompleta para CVE-2019-16759
The PHP module within vBulletin contains an unspecified vulnerability that allows for remote code execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panel request. This CVE ID resolves an incomplete patch for CVE-2019-16759.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-08-12 CVE Reserved
- 2020-08-12 CVE Published
- 2020-08-20 First Exploit
- 2021-11-03 Exploited in Wild
- 2022-05-03 KEV Due Date
- 2024-08-04 CVE Updated
- 2024-11-07 EPSS Updated
CWE
- CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
https://cwe.mitre.org/data/definitions/78.html | Technical Description |
URL | Date | SRC |
---|---|---|
https://github.com/ctlyz123/CVE-2020-17496 | 2020-08-20 | |
https://blog.exploitee.rs/2020/exploiting-vbulletin-a-tale-of-patch-fail | 2024-08-04 | |
https://seclists.org/fulldisclosure/2020/Aug/5 | 2024-08-04 |
URL | Date | SRC |
---|---|---|
https://forum.vbulletin.com/forum/vbulletin-announcements/vbulletin-announcements_aa/4445227-vbulletin-5-6-0-5-6-1-5-6-2-security-patch | 2022-10-26 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Vbulletin Search vendor "Vbulletin" | Vbulletin Search vendor "Vbulletin" for product "Vbulletin" | >= 5.5.4 <= 5.6.2 Search vendor "Vbulletin" for product "Vbulletin" and version " >= 5.5.4 <= 5.6.2" | - |
Affected
|