CVE-2008-6754: Infoleak
The Personal Sticky Threads addon 1.0.3c for vBulletin allows remote authenticated users to read the title, author, and pages of an arbitrary thread by toggling a personal sticky.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6754?
CVE-2008-6754 is considered a moderate severity vulnerability as it allows remote authenticated users to access sensitive thread information.
How do I fix CVE-2008-6754?
To fix CVE-2008-6754, you should upgrade the Personal Sticky Threads addon to a version that does not have this vulnerability.
Who is affected by CVE-2008-6754?
CVE-2008-6754 affects installations of the Personal Sticky Threads addon version 1.0.3c for vBulletin.
Can CVE-2008-6754 be exploited remotely?
Yes, CVE-2008-6754 can be exploited remotely by authenticated users with access to the affected addon.
What information can be accessed due to CVE-2008-6754?
CVE-2008-6754 allows remote authenticated users to read the title, author, and page details of arbitrary threads.