mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-06-20 09:50:49 +00:00
Add CVE-2019-16759
This commit is contained in:
parent
2ec50146b0
commit
e5729add18
BIN
vBulletin/CVE-2019-16759/CVE-2019-16759.gif
Normal file
BIN
vBulletin/CVE-2019-16759/CVE-2019-16759.gif
Normal file
Binary file not shown.
After Width: | Height: | Size: 1.0 MiB |
11
vBulletin/CVE-2019-16759/README.md
Normal file
11
vBulletin/CVE-2019-16759/README.md
Normal file
@ -0,0 +1,11 @@
|
|||||||
|
# CVE-2019-16759 vBulletin 5.x Remote Code Execution Vulnerability
|
||||||
|
|
||||||
|
vBulletin 5.x through 5.5.4 allows remote command execution via the widgetConfig[code] parameter in an ajax/render/widget_php routestring request.
|
||||||
|
|
||||||
|
**Affected version**: vBulletin 5.x - 5.5.4
|
||||||
|
|
||||||
|
**[FOFA](https://fofa.so/result?qbase64=YXBwPSJ2QnVsbGV0aW4i) query rule**: app="vBulletin"
|
||||||
|
|
||||||
|
# Demo
|
||||||
|
|
||||||
|

|
Loading…
x
Reference in New Issue
Block a user