vBulletin Update
4038Warning Date
Severity Level
Warning Number
Target Sector
13 May, 2020
● Critical
2020-1229
All
Description:
vBulletin has released security update to address a vulnerability in the following versions:
- vBulletin 5 Connect
- prior to 5.5.2
Threats:
Attacker could exploit by injecting SQL commands to obtain the admin user as well as the admin user’s security token.
Best practice and Recommendations:
The CERT team encourages users to review vBulletin security advisory and apply the necessary updates: