Description
Directory traversal vulnerability in vbseo.php in Crawlability vBSEO plugin 3.1.0 for vBulletin allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the vbseourl parameter.
CVSS Metrics
- Vector
- AV:N/AC:M/Au:N/C:P/I:P/A:P
- Access Vector
- network
- Access Cmplx
- medium
- Auth
- none
- Confidentiality
- partial
- Integrity
- partial
- Availability
- partial
- Weaknesses
- CWE-22
Metadata
- Primary Vendor
- VBSEO
- Published
- 3/23/2010
- Last Modified
- 4/11/2025
- Source
- NIST NVD
- Note: Verify all details with official vendor sources before applying patches.
Affected Products
vbseo : vbseo
AI-Powered Remediation
Generate remediation guidance or a C-suite brief for this vulnerability.