CVE-2019-17132CRITICAL9.8CVSS Severity ScoreEPSS Score0.0450%EPSS Percentile6.67thPublishedOct 4, 2019Last ModifiedNov 21, 2024Vulnerability DescriptionvBulletin through 5.5.4 mishandles custom avatars.Affected Platforms (CPE)π¦VbulletinVbulletin<= 5.5.4References & Advisoriesπ http://packetstormsecurity.com/files/154759/vBulletin-5.5.4-Remote-Code-Execution.htmlπ http://seclists.org/fulldisclosure/2019/Oct/9π https://forum.vbulletin.com/forum/vbulletin-announcements/vbulletin-announcements_aa/4423646-vbulletin-5-5-x-5-5-2-5-5-3-and-5-5-4-security-patch-level-2π http://packetstormsecurity.com/files/154759/vBulletin-5.5.4-Remote-Code-Execution.htmlπ http://seclists.org/fulldisclosure/2019/Oct/9π https://forum.vbulletin.com/forum/vbulletin-announcements/vbulletin-announcements_aa/4423646-vbulletin-5-5-x-5-5-2-5-5-3-and-5-5-4-security-patch-level-2