References https://nvd.nist.gov/vuln/detail/CVE-2025-48828 https://blog.kevintel.com/vbulletin-replaceadtemplate-kev/ https://kevintel.com/CVE-2025-48828 https://github.com/ill-deed/vBulletin-CVE-2025-48828-Multi-target https://threatprotect.qualys.com/2025/05/28/vbulletin-remote-code-execution-vulnerabilities-exploited-in-the-wild-cve-2025-48827-cve-2025-48828/ https://www.tenable.com/cve/CVE-2025-48828 https://isc.sans.edu/diary/32006 https://attackerkb.com/topics/TYANwh2VFK/cve-2025-48828 https://www.sentinelone.com/vulnerability-database/cve-2025-48828/ https://www.idappcom.co.uk/post/vbulletin-replaceadtemplate-remote-code-execution-cve-2025-48828 https://karmainsecurity.com/dont-call-that-protected-method-vbulletin-rce
Related VulnerabilitiesPoCCVE-2026-61511: vBulletin 6.x - Remote Code ExecutionvBulletin /ajax/render/pagenav 代码执行漏洞(CVE-2026-61511)CVE-2019-16759: vBulletin v5.0.0-v5.5.4 Remote Command ExecutionPoCCVE-2016-6195: vBulletin <= 4.2.3 - SQL InjectionPoCCVE-2018-6200: vBulletin - Open RedirectPoCCVE-2019-16759: vBulletin 5.0.0-5.5.4 - Remote Command ExecutionPoCCVE-2020-12720: vBulletin SQL InjectionPoCCVE-2020-17496: vBulletin 5.5.4 - 5.6.2- Remote Command ExecutionPoCCVE-2023-25135: vBulletin <= 5.6.9 - Pre-authentication Remote Code ExecutionPoCCVE-2025-48827: vBulletin 5.0.0-6.0.3 - Authentication BypassPoCCVE-2025-48828: vBulletin replaceAdTemplate - Remote Code ExecutionPoCvbulletin-ajaxreg-sqli: vBulletin 3.x / 4.x AjaxReg - SQL InjectionPoCvbulletin-backdoor: vBulletin Backdoor - Detect