Skip to main content

CVE-2015-7808

CVSS Score Not Available
79.04%
HIGH RiskEPSS (99th percentile)

The vB_Api_Hook::decodeArguments method in vBulletin 5 Connect 5.1.2 through 5.1.9 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via a crafted serialized object in the arguments parameter to ajax/api/hook/decodeArguments.

Published: 11/24/2015
Modified: 4/12/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

79.04%HIGH Exploitation Risk
99th percentile

This vulnerability has a 79.04% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.