CVE-2019-17271
08.10.2019, 13:15
vBulletin 5.5.4 allows SQL Injection via the ajax/api/hook/getHookList or ajax/api/widget/getWidgetList where parameter.
Vendor | Product | Version |
---|---|---|
vbulletin | vbulletin | 𝑥 ≤ 5.5.4 |
𝑥
= Vulnerable software versions
References