High
CVSS 7.5
Overview
activate.php in versatileBulletinBoard (vBB) 0.9.5 and 0.9.6 allows remote attackers to gain unauthorized administrative access via a URL request with the uid parameter set to the webmaster uid.
activate.php in versatileBulletinBoard (vBB) 0.9.5 and 0.9.6 allows remote attac...
activate.php in versatileBulletinBoard (vBB) 0.9.5 and 0.9.6 allows remote attackers to gain unauthorized administrative access via a URL request with the uid parameter set to the webmaster uid.
This vulnerability is rated 🟠 HIGH.
Recommended actions: