CVE-2012-5104: Ubbcentral Ubb.threads

Medium severity, CVSS 4.3. EPSS: 2% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in forums/ubbthreads.php in UBB.threads 7.5.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the Loginname parameter.

Affected products

  • Ubbcentral Ubb.threads: any version; up to and including 7.5.6; version 3.4 only; version 3.5 only; version 5.0 only; version 5.5.1 only; …

Published 2012-09-23. Last modified 2026-06-16.