Description
member2.php in vBulletin 2.2.9 and earlier does not properly restrict the $perpage variable to be an integer, which causes an error message to be reflected back to the user without quoting, which facilitates cross-site scripting (XSS) and possibly other attacks.
Products
- Jelsoft vBulletin 2.0.1
- Jelsoft vBulletin 2.0.2
- Jelsoft vBulletin 2.0
- Jelsoft vBulletin 2.2.0
- Jelsoft vBulletin 2.2.1
- Jelsoft vBulletin 2.2.2
- Jelsoft vBulletin 2.2.3
- Jelsoft vBulletin 2.2.4
- Jelsoft vBulletin 2.2.5
- Jelsoft vBulletin 2.2.6
- Jelsoft vBulletin 2.2.7
- Jelsoft vBulletin 2.2.8
- Jelsoft vBulletin 2.2.9
- Jelsoft vBulletin 2.2.9_can
Questions to Ask Vendors
- Can you confirm whether your systems are affected by CVE-2002-2235, and if so, what steps are you currently taking to mitigate this vulnerability?
- What is your estimated timeline for fully resolving CVE-2002-2235 in your products or services, and how will you communicate updates on this issue to us as your customer?
Recommended Actions
- Check out the advisory links provided below.
References