Skip to content
The Nexus
SECURITYJul 28 · 18:08 UTCBLEEPING COMPUTERBill Toulas

vBulletin fixes critical pre-auth RCE flaw with public exploit

A critical vulnerability in vBulletin forum software allows unauthenticated attackers to execute arbitrary PHP code via template rendering. The flaw has a public exploit available.

Nexus surfaces and summarizes. The full story lives at the source.

Mentioned
Spot something wrong with this article?Report a problem →
Forward this
Related Signal

Adjacent reporting