CVE-2019-17271

Publication date

2019-10-08 12:26:48

Family

mitre

State

PUBLISHED

Description

vBulletin 5.5.4 allows SQL Injection via the ajax/api/hook/getHookList or ajax/api/widget/getWidgetList where parameter.