The PHP module within vBulletin contains an unspecified vulnerability that allows for remote code execution via the widgetConfig[code] parameter in an ajax/render/widget_php routestring request. Required action: Apply updates per vendor instructions.
Vendor: vBulletin · Product: vBulletin
Etkilenen sürümler: -
Bu zafiyet müşteriye ait asset, agent, connector ve attack surface verileriyle eşleşiyorsa önceliklendirilmiş aksiyon planına alınmalıdır.