Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Usebb

First CVE: Aug 3, 2005Active for: 21 yearsTotal CVEs: 12
36.6
VTI Score
Medium

Usebb is a modestly represented forum and community platform software that, despite a narrow product focus, occupies a prominent position in the vulnerability landscape due to its widespread deployment across hosted and self-hosted discussion communities. Its vulnerability profile centers on the single Usebb product and recurs through application-layer weakness classes including cross-site request forgery, improper input validation, and related web-tier flaws that are typical of community-facing software, with a meaningful share of disclosures reaching serious severity and a tendency toward public exploit availability. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
12
Total CVEs
More Total CVEs than 93% of tracked vendors
2.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 80% of tracked vendors
6.6
Avg CVSS Score
Higher Avg CVSS Score than 42% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Usebb over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 3, 2005
20 years ago
Most Recent CVE
Jan 27, 2020
2,370 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (12 CVEs).

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2007-3963HIGH
Multiple cross-site scripting (XSS) vulnerabilities in UseBB 1.0.7, and possibly other 1.0.x versions, allow remote attackers to inject arbitrary web script or HTML via the PATH_IN
Jul 25, 20079.333NOYES
CVE-2020-8088CRITICAL
panel_login.php in UseBB 1.0.12 allows type juggling for login bypass because != is used instead of !== for password hashes, which mishandles hashes that begin with 0e followed by
Jan 27, 20209.829NONO
CVE-2011-3612HIGH
Cross-Site Request Forgery (CSRF) vulnerability exists in panel.php in UseBB before 1.0.12.
Jan 22, 20208.828NONO
CVE-2011-3611HIGH
A File Inclusion vulnerability exists in act parameter to admin.php in UseBB before 1.0.12.
Jan 22, 20207.224NONO
CVE-2005-2439HIGH
SQL injection vulnerability in UseBB 0.5.1 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the search function.
Aug 3, 20057.519NONO
CVE-2006-2524MEDIUM
Cross-site scripting (XSS) vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors when processing the use
May 22, 20066.818NONO
CVE-2010-3713MEDIUM
rss.php in UseBB before 1.0.11 does not properly handle forum configurations in which a user has the view permission but not the read permission, which allows remote attackers to b
Oct 28, 20104.317NONO
CVE-2006-2525MEDIUM
SQL injection vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to execute arbitrary SQL commands via the member list search module.
May 22, 20066.417NONO
CVE-2009-4041MEDIUM
UseBB 1.0.9 before 1.0.10 allows remote attackers to cause a denial of service (infinite loop) via crafted BBCode tags.
Nov 20, 20095.015NONO
CVE-2007-2066MEDIUM
UseBB before 1.0.6 allows remote attackers to obtain sensitive information via a request with unspecified GET or POST parameters to an unspecified script, which reveals the path in
Apr 18, 20075.015NONO
View all 12 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products12 CVEs
58%
33%
8%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network3 (25.0%)
Unknown9 (75.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (25.0%)
High0 (0.0%)
Unknown9 (75.0%)
User Interaction
None2 (16.7%)
Unknown9 (75.0%)
Required1 (8.3%)
Privileges Required
Low0 (0.0%)
High1 (8.3%)
None2 (16.7%)
Unknown9 (75.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
8.3% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Usebb.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Usebb — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Usebb's Products

View all 2 CNAs →

Top CWEs