CVE-2018-6200: vBulletin

Medium severity, CVSS 6.1. EPSS: 3.5% chance of exploitation in the next 30 days.

vBulletin 3.x.x and 4.2.x through 4.2.5 has an open redirect via the redirector.php url parameter.

Affected products

  • vBulletin vBulletin: from 3.0.0, up to and including 3.8.11; from 4.2.0, up to and including 4.2.5

Published 2018-01-25. Last modified 2026-06-17.