Products: 1
    Vulnerabilities: 13
    Known Exploited: 0
    0
    Critical Level Threats
    10
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2007-3588

    SQL injection vulnerability in reply.php in VBZooM 1.12 allows remote attackers to execute arbitrary SQL commands via the UserID parameter to sub-join.php. NOTE: this may be the same as CVE-2006-3691.4.

    Last Modified: Apr 23, 2026
    Published: Jul 05, 2007

    CVE-2006-4634

    Cross-site scripting (XSS) vulnerability in index.php in VBZooM allows remote attackers to inject arbitrary web script or HTML via the UserID parameter, a different vector than CVE-2006-1133 and CVE-2005-2441.

    Last Modified: Apr 16, 2026
    Published: Sep 08, 2006

    CVE-2006-3691

    Multiple SQL injection vulnerabilities in VBZooM 1.11 and earlier allow remote attackers to execute arbitrary SQL commands via the UserID parameter to (1) ignore-pm.php, (2) sendmail.php, (3) reply.php or (4) sub-join.php.

    Last Modified: Apr 16, 2026
    Published: Jul 18, 2006

    CVE-2006-3238

    Multiple SQL injection vulnerabilities in VBZooM 1.00 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) MemberID parameter to rank.php, and the (2) QuranID parameter to lng.php.

    Last Modified: Apr 16, 2026
    Published: Jun 27, 2006

    CVE-2006-3239

    SQL injection vulnerability in message.php in VBZooM 1.11 and earlier allows remote attackers to execute arbitrary SQL commands via the UserID parameter.

    Last Modified: Apr 16, 2026
    Published: Jun 27, 2006
    Items Per Page
    Vbzoom Vulnerabilities & Security CVEs | CVE-DB