CVE Tools

Ubbcentral

12 CVEs tracked since 2005. Since Jun 2005, none of them reached CISA KEV.

Ubbcentral CVEs per month

Jun 2005 to Oct 2006. Point at a month, or focus the strip and use the arrow keys.
Ubbcentral CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-0650
2005-07null or fewer
2005-08null or fewer
2005-09null or fewer
2005-1020
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-03null or fewer
2006-04null or fewer
2006-0520
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-1030

Products

The products that kept showing up in Ubbcentral's monthly top three, with their CVEs summed over those months.

  1. Ubb.threads124 months

Latest CVEs

The 15 most recently published vulnerabilities affecting Ubbcentral.

  1. CVE-2012-5104Cross-site scripting (XSS) vulnerability in forums/ubbthreads.php in UBB.threads 7.5.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the Loginname parameter.4.3
  2. CVE-2008-6970SQL injection vulnerability in dosearch.inc.php in UBB.threads 7.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the Forum[] array parameter.7.5
  3. CVE-2007-1956SQL injection vulnerability in ubbthreads.php in Groupee UBB.threads 6.1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the C parameter.7.5
  4. CVE-2006-5136Multiple PHP remote file inclusion vulnerabilities in ubbt.inc.php in Groupee UBB.threads 6.5.1.1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) GLOBALS[thispath] or (2) ...7.5
  5. CVE-2006-5138Groupee UBB.threads 6.5.1.1 allows remote attackers to obtain sensitive information via a direct request for cron/php/subscriptions.php, which reveals the path in an error message.5.0
  6. CVE-2006-5137Multiple direct static code injection vulnerabilities in Groupee UBB.threads 6.5.1.1 allow remote attackers to (1) inject PHP code via a theme[] array parameter to admin/doedittheme.php, which is i...5.1
  7. CVE-2006-2755Cross-site scripting (XSS) vulnerability in index.php in UBBThreads 5.x and earlier allows remote attackers to inject arbitrary web script or HTML via the debug parameter, as demonstrated by steali...4.3
  8. CVE-2006-2675PHP remote file inclusion vulnerability in ubbt.inc.php in UBBThreads 5.x and 6.x allows remote attackers to execute arbitrary PHP code via a URL in the (1) thispath or (2) configdir parameters.5.1
  9. CVE-2006-2568PHP remote file inclusion vulnerability in addpost_newpoll.php in UBB.threads 6.4 through 6.5.2 and 6.5.1.1 (trial) allows remote attackers to execute arbitrary PHP code via a URL in the thispath p...5.1
  10. CVE-2006-1423SQL injection vulnerability in showflat.php in UBB.threads 5.5.1, 6.0 br5, 6.0.1, 6.0.2, and earlier, allows remote attackers to execute arbitrary SQL commands via the Number parameter.5.0
  11. CVE-2006-0545SQL injection vulnerability in showflat.php in Groupee (formerly known as Infopop) UBB.threads 6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Number parameter.7.5
  12. CVE-2004-2509Cross-site scripting (XSS) vulnerabilities in (1) calendar.php, (2) login.php, and (3) online.php in Infopop UBB.Threads 6.2.3 and 6.5 allow remote attackers to inject arbitrary web script or HTML ...4.3
  13. CVE-2004-2510Cross-site scripting (XSS) vulnerability in showflat.php in Infopop UBB.Threads before 6.5 allows remote attackers to inject arbitrary web script or HTML via the Cat parameter.4.3
  14. CVE-2005-2061Infopop UBB.Threads before 6.5.2 Beta allows remote attackers to include arbitrary files via the language parameter in a cookie followed by a null (%00) byte.5.0
  15. CVE-2005-2057Multiple cross-site scripting (XSS) vulnerabilities in Infopop UBB.Threads before 6.5.2 Beta allow remote attackers to inject arbitrary web script or HTML via the (1) Searchpage parameter to dosear...6.8

The record

Peak rank
#21 in Jun 2005
Busiest month shown
Jun 2005, 5 CVEs
Months with a KEV entry
0 since Jun 2005
Monthly snapshots
4 since 2005
Ubbcentral's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store