Vulnerability Description
image.php in vBulletin 3.0.9 and earlier allows remote attackers with access to the administrator panel to upload arbitrary files via the upload action.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Jelsoft | Vbulletin | 1.0.1 |
References
- http://marc.info/?l=bugtraq&m=112715150320677&w=2
- http://morph3us.org/advisories/20050917-vbulletin-3.0.8.txtExploitPatchVendor Advisory
- http://secunia.com/advisories/16873/PatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22325
- http://marc.info/?l=bugtraq&m=112715150320677&w=2
- http://morph3us.org/advisories/20050917-vbulletin-3.0.8.txtExploitPatchVendor Advisory
- http://secunia.com/advisories/16873/PatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22325
FAQ
What is CVE-2005-3021?
CVE-2005-3021 is a vulnerability with a CVSS score of 2.1 (LOW). image.php in vBulletin 3.0.9 and earlier allows remote attackers with access to the administrator panel to upload arbitrary files via the upload action.
How severe is CVE-2005-3021?
CVE-2005-3021 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-3021?
Check the references section above for vendor advisories and patch information. Affected products include: Jelsoft Vbulletin.