Get a Pentest and security assessment of your IT network.

Cyber Security

Two Critical 0-Day Remote Exploits for vBulletin Forum Disclosed Publicly

Security researchers have disclosed details of two unpatched critical vulnerabilities in popular internet forum software. One of the vulnerabilities could allow a remote attacker to execute malicious code on the latest version of vBulletin application server. The vulnerabilities affect version 5 of the popular forum software, which powers more than 100,000 websites on the Internet. The vulnerability is due to unsafe usage of PHP’s unserialize() on user-supplied input, which allows an unauthenticated hacker to delete arbitrary files and possibly execute arbitrary code.

Source: https://thehackernews.com/2017/12/vbulletin-forum-hacking.html

Related posts
Cyber Security

Zip Codes & PII: Are They Personal Data?

Cyber Security

Zero-Day Vulnerabilities: User Defence Guide

Cyber Security

Zero Knowledge Voting with Trusted Server

Cyber Security

ZeroNet: 51% Attack Risks & Mitigation