CVE-2004-2076

Jelsoft vBulletin 3.0.0 RC4 - XSS

Title source: llm
STIX 2.1

Description

Cross-site scripting (XSS) vulnerability in search.php for Jelsoft vBulletin 3.0.0 RC4 allows remote attackers to inject arbitrary web script or HTML via the query parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Rafel Ivgi The-Insider · textwebappsphp
https://www.exploit-db.com/exploits/23691

References (3)

Core 3
Core References
Exploit mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/353869
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9656
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15208

Scores

EPSS 0.0040
EPSS Percentile 60.8%

Details

Status published
Products (1)
jelsoft/vbulletin 3.0.0_rc4
Published Dec 31, 2004
Tracked Since Feb 18, 2026