Description
Jelsoft vBulletin 3.5.4 allows remote attackers to register multiple arbitrary users and cause a denial of service (resource consumption) via a large number of requests to register.php. NOTE: the vendor has disputed this vulnerability, stating "If you have the CAPTCHA enabled then the registrations wont even go through. ... if you are talking about the flood being allowed in the first place then surely this is something that should be handled at the server level.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T19:06:06.898Z
Reserved: 2006-08-21T00:00:00.000Z
Link: CVE-2006-4272
No data.
Status : Modified
Published: 2006-08-21T21:04:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2006-4272
No data.
OpenCVE Enrichment
No data.
Weaknesses