CVE-2014-9463: Vbseo
High severity, CVSS 8.8. EPSS: 14.8% chance of exploitation in the next 30 days.
functions_vbseo_hook.php in the VBSEO module for vBulletin allows remote authenticated users to execute arbitrary code via the HTTP Referer header to visitormessage.php.
Affected products
- Vbseo Vbseo: affected versions not specified
Published 2017-09-15. Last modified 2026-06-17.