CVE-2015-7808
CVSS Score Not Available
79.04%
HIGH RiskEPSS (99th percentile)
The vB_Api_Hook::decodeArguments method in vBulletin 5 Connect 5.1.2 through 5.1.9 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in the arguments parameter to ajax/api/hook/decodeArguments.
Published: 11/24/2015
Modified: 4/12/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
79.04%HIGH Exploitation Risk
99th percentile
This vulnerability has a 79.04% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.