Back to Database
Status published
Unknown
CVE-2022-25091
Infopop Ultimate Bulletin Board up to v5.47a was discovered to...
Vulnerability Description
Infopop Ultimate Bulletin Board up to v5.47a was discovered to allow all messages posted inside private forums to be disclosed by unauthenticated users via the quote reply feature.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-25091
Credits & Attribution
No credits recorded in the NVD database.
References
- https://marc.info/?l=vuln-dev&m=97486849231786&w=2
- https://vulners.com/securityvulns/SECURITYVULNS:DOC:954
- https://web.archive.org/web/20030207100935/
- http://www.infopop.com/support/ubbclassic/version5.html
- https://web.archive.org/web/20030207100935/http://www.infopop.com/support/ubbclassic/version5.html
More from infopop
View All →CVE-2005-1199
SQL injection vulnerability in printthread.php in UBB.Threads allows remote attackers...
High
7.5
CVE-2003-1278
Cross-site scripting vulnerability (XSS) in OpenTopic 2.3.1 allows remote attackers...
Medium
4.3
CVE-2003-0587
Cross-site scripting (XSS) vulnerability in Infopop Ultimate Bulletin Board (UBB)...
Medium
6.9
CVE-2002-0223
Infopop UBB.Threads 5.4 and Wired Community Software WWWThreads 5.0 through...
High
7.5
CVE-2002-0118
Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0...
High
7.5
Affected Vendor
infopop
View all reports →Affected Software
ultimate bulletin board
Vulnerable Versions:
0
Timeline
Official Publish:
April 27th, 2023
Last Modified:
February 3rd, 2025
Added to House:
July 21st, 2026
CVSS Vectors
No vector data available
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.