References https://nvd.nist.gov/vuln/detail/CVE-2025-48827 https://blog.kevintel.com/vbulletin-replaceadtemplate-kev/ https://kevintel.com/CVE-2025-48827 https://karmainsecurity.com/dont-call-that-protected-method-vbulletin-rce https://github.com/0xgh057r3c0n/CVE-2025-48827 https://threatprotect.qualys.com/2025/05/28/vbulletin-remote-code-execution-vulnerabilities-exploited-in-the-wild-cve-2025-48827-cve-2025-48828/ https://firecompass.com/zero-auth-full-control-inside-the-critical-vbulletin-cve-2025-48827/ https://www.sentinelone.com/vulnerability-database/cve-2025-48827/ https://github.com/SystemVll/CVE-2025-48827 https://www.securityweek.com/vbulletin-vulnerability-exploited-in-the-wild/
Related VulnerabilitiesPoCCVE-2026-61511: vBulletin 6.x - Remote Code ExecutionvBulletin /ajax/render/pagenav 代码执行漏洞(CVE-2026-61511)CVE-2019-16759: vBulletin v5.0.0-v5.5.4 Remote Command ExecutionPoCCVE-2016-6195: vBulletin <= 4.2.3 - SQL InjectionPoCCVE-2018-6200: vBulletin - Open RedirectPoCCVE-2019-16759: vBulletin 5.0.0-5.5.4 - Remote Command ExecutionPoCCVE-2020-12720: vBulletin SQL InjectionPoCCVE-2020-17496: vBulletin 5.5.4 - 5.6.2- Remote Command ExecutionPoCCVE-2023-25135: vBulletin <= 5.6.9 - Pre-authentication Remote Code ExecutionPoCCVE-2025-48827: vBulletin 5.0.0-6.0.3 - Authentication BypassPoCCVE-2025-48828: vBulletin replaceAdTemplate - Remote Code ExecutionPoCvbulletin-ajaxreg-sqli: vBulletin 3.x / 4.x AjaxReg - SQL InjectionPoCvbulletin-backdoor: vBulletin Backdoor - Detect