Known vulnerabilities in vBulletin 3.8.7 Patch Level 4

Vendor: vBulletin
Software: vBulletin
Version: 3.8.7 Patch Level 4
Software CPE: cpe:2.3:a:vbulletin:vbulletin:*:*:*:*:*:*:*:*
Total vulnerabilities: 2
Public exploits: 1
Known exploited (KEV): 1
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting vBulletin version 3.8.7 Patch Level 4 vBulletin 3.8.7 Patch Level 4 is affected by 2 vulnerabilities: 1 critical, 1 low Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU10311 - URL Redirection to Untrusted Site ('Open Redirect')
CVE-2018-6200
CWE-601 Low
No
No
- 26.01.2018 SB2018012904
#VU300 - Server-Side Request Forgery (SSRF)
CVE-2016-6483
CWE-918 Critical
Public exploit available
Exploited
- 10.08.2016 SB2016081009