CVE-2014-9463
functions_vbseo_hook.php in the VBSEO module for vBulletin allows remote authenticated users to execute arbitrary code via the HTTP Referer header to visitormessage.php.
- Vbseo
- All versions
- CVSS 2.0
- 9.0 HIGH
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 14.8% (96th percentile)
- Weakness
- CWE-94
- NVD status
- Modified
- Published
- 2017-09-15
CVE-2014-9463 at NVD
3 known exploits for CVE-2014-9463
Proof-of-concept code and exploit modules indexed by Sploitus