CVE-2019-17130: Medium severity vbulletin vulnerability
Published Oct 4, 2019
·Updated
vBulletin through 5.5.4 mishandles external URLs within the /core/vb/vurl.php file and the /core/vb/vurl directories.
Affected Software
1 affected component
vBulletin vBulletin<=5.5.4
Event History
Oct 4, 2019
CVE Published
via MITRE·11:36 AM
Data Sourced
via MITRE·11:36 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-17130.
2
What is the severity of CVE-2019-17130?
The severity of CVE-2019-17130 is medium, with a severity value of 6.5.
3
What is vBulletin?
vBulletin is a commercial Internet forum software package.
4
Which versions of vBulletin are affected?
vBulletin versions up to and including 5.5.4 are affected.
5
How does CVE-2019-17130 affect vBulletin?
CVE-2019-17130 allows for the mishandling of external URLs within certain vBulletin files and directories.