Skip to main content

Vendor/product archive

myupb / ultimate_php_board CVEs

Beta · best-effort

4 CVEs tagged to myupb / ultimate_php_board0 Critical, 1 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2025-61539

Published Oct 16, 2025

Cross site scripting (XSS) vulnerability in Ultimate PHP Board 2.2.7 via the u_name parameter in lostpassword.php.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-2217

Published Mar 10, 2015

Multiple cross-site scripting (XSS) vulnerabilities in Ultimate PHP Board (aka myUPB) before 2.2.8 allow remote attackers to inject arbitrary web script or HTML via the (1) q para…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0395

Published Jul 2, 2003

Ultimate PHP Board (UPB) 1.9 allows remote attackers to execute arbitrary PHP code with UPB administrator privileges via an HTTP request containing the code in the User-Agent head…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1