CVE-2020-25121
The Admin CP in vBulletin 5.6.3 allows XSS via the Paid Subscription Email Notification field in the Options.
The Admin CP in vBulletin 5.6.3 allows XSS via the Paid Subscription Email Notification field in the Options.
MEDIUM · CVSS 4.8
EPSS 0.00235
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0