CVE-2014-8670: Medium severity vbulletin vulnerability
Published Nov 6, 2014
·Updated
Open redirect vulnerability in go.php in vBulletin 4.2.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.
Affected Software
1 affected component
vBulletin vBulletin=4.2.1
Event History
Nov 6, 2014
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8670?
CVE-2014-8670 is classified as a moderate severity vulnerability due to its potential for phishing attacks.
2
How do I fix CVE-2014-8670?
To fix CVE-2014-8670, you should upgrade vBulletin to the latest version that patches this open redirect vulnerability.
3
What type of vulnerability is CVE-2014-8670?
CVE-2014-8670 is an open redirect vulnerability that allows attackers to redirect users to arbitrary websites.
4
Who is affected by CVE-2014-8670?
CVE-2014-8670 affects vBulletin version 4.2.1, which is used in various online forums and communities.
5
What can attackers do with CVE-2014-8670?
Attackers can exploit CVE-2014-8670 to conduct phishing attacks by redirecting users to malicious websites.