Description
Cross-site scripting (XSS) vulnerability in search.php for Jelsoft vBulletin 3.0.0 RC4 allows remote attackers to inject arbitrary web script or HTML via the query parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Rafel Ivgi The-Insider · textwebappsphp
https://www.exploit-db.com/exploits/23691
References (3)
Core 3
Core References
Exploit mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/353869
Exploit vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/9656
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15208
Scores
EPSS
0.0040
EPSS Percentile
60.8%
Details
Status
published
Products (1)
jelsoft/vbulletin
3.0.0_rc4
Published
Dec 31, 2004
Tracked Since
Feb 18, 2026