VYPR
Medium severity4.9NVD Advisory· Published Oct 8, 2019· Updated Jun 17, 2026

CVE-2019-17271

CVE-2019-17271

Description

vBulletin 5.5.4 allows SQL Injection via the ajax/api/hook/getHookList or ajax/api/widget/getWidgetList where parameter.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Jelsoft/Vbulletinllm-create2 versions
    =5.5.4+ 1 more
    • (no CPE)range: =5.5.4
    • cpe:2.3:a:vbulletin:vbulletin:*:*:*:*:*:*:*:*range: <=5.5.4
  • vBulletin/vBulletindescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.