Dossier
critical pre-auth RCE flaw
Coverage of critical pre-auth RCE flaw in the Nexus archive.
- vBulletin fixes critical pre-auth RCE flaw with public exploit
A critical vulnerability in vBulletin forum software allows unauthenticated attackers to execute arbitrary PHP code via template rendering. The flaw has a public exploit available.