CVE-2005-0511
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 36%
from disclosure to weapon0 days
Published on NVDFeb 23
1st PoCFeb 22
metasploit+2d
exploitation probability
36%top 2% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/16896unverifiedexploitdbwww.exploit-db.com/exploits/832unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.