Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mybulletinboard mybulletinboard 1.1.5 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2011-4084
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4858. Reason: This candidate is a duplicate of CVE-2011-4858. Notes: All CVE users should reference CVE-2011-4858 instead of this candidate. All references and descriptions in this candidate have been removed...
1 EDB exploit
NA
CVE-2011-4858
Apache Tomcat prior to 5.5.35, 6.x prior to 6.0.35, and 7.x prior to 7.0.23 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote malicious users to cause a denial of service (CPU consumption) by sendi...
Apache Tomcat 6.0.33
Apache Tomcat 7.0.12
Apache Tomcat 6.0.6
Apache Tomcat 7.0.20
Apache Tomcat 6.0.11
Apache Tomcat 6.0.34
Apache Tomcat 7.0.8
Apache Tomcat 7.0.1
Apache Tomcat 7.0.2
Apache Tomcat 7.0.5
Apache Tomcat 6.0.22
Apache Tomcat 6.0.25
Apache Tomcat 6.0.7
Apache Tomcat 6.0.4
Apache Tomcat 7.0.22
Apache Tomcat 5.5.35
Apache Tomcat 6.0.15
Apache Tomcat 7.0.0
Apache Tomcat 7.0.6
Apache Tomcat 7.0.18
Apache Tomcat 6.0.20
Apache Tomcat 7.0.14
1 EDB exploit
NA
CVE-2008-3967
moderation.php in MyBB (aka MyBulletinBoard) prior to 1.4.1 does not properly check for moderator privileges, which has unknown impact and remote attack vectors.
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb
Mybb Mybb 1.2.9
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.2.0
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
Mybb Mybb 1.2.13
Mybb Mybb 1.1.0
Mybb Mybb 1.2.3
Mybb Mybb 1.2.7
NA
CVE-2008-3965
SQL injection vulnerability in misc.php in MyBB (aka MyBulletinBoard) prior to 1.4.1 allows remote malicious users to execute arbitrary SQL commands via a certain editor field.
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb
Mybb Mybb 1.2.9
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.2.0
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
Mybb Mybb 1.2.13
Mybb Mybb 1.1.0
Mybb Mybb 1.2.3
Mybb Mybb 1.2.7
NA
CVE-2010-4627
Cross-site request forgery (CSRF) vulnerability in usercp2.php in MyBB (aka MyBulletinBoard) prior to 1.4.12 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.4.3
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb 1.2.9
Mybb Mybb 1.4.8
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.4.0
Mybb Mybb 1.2.0
Mybb Mybb 1.4.9
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.4.2
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
NA
CVE-2010-4624
MyBB (aka MyBulletinBoard) prior to 1.4.12 allows remote authenticated users to bypass intended restrictions on the number of [img] MyCodes by editing a post after it has been created.
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.4.3
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb 1.2.9
Mybb Mybb 1.4.8
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.4.0
Mybb Mybb 1.2.0
Mybb Mybb 1.4.9
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.4.2
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
NA
CVE-2008-3966
Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) prior to 1.4.1 allow remote malicious users to inject arbitrary web script or HTML via (1) a certain referrer field in usercp2.php, (2) a certain location field in inc/functions_online.php, and cert...
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb
Mybb Mybb 1.2.9
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.2.0
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
Mybb Mybb 1.2.13
Mybb Mybb 1.1.0
Mybb Mybb 1.2.3
Mybb Mybb 1.2.7
NA
CVE-2010-4625
MyBB (aka MyBulletinBoard) prior to 1.4.12 does not properly handle a configuration with a visible forum that contains hidden threads, which allows remote malicious users to obtain sensitive information by reading the Latest Threads block of the Portal Page.
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.4.3
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb 1.2.9
Mybb Mybb 1.4.8
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.4.0
Mybb Mybb 1.2.0
Mybb Mybb 1.4.9
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.4.2
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
NA
CVE-2010-4628
member.php in MyBB (aka MyBulletinBoard) prior to 1.4.12 makes a certain superfluous call to the SQL COUNT function, which allows remote malicious users to cause a denial of service (resource consumption) by making requests to member.php that trigger scans of the entire users tab...
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.4.3
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb 1.2.9
Mybb Mybb 1.4.8
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.4.0
Mybb Mybb 1.2.0
Mybb Mybb 1.4.9
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.4.2
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
NA
CVE-2010-4629
MyBB (aka MyBulletinBoard) prior to 1.4.12 does not properly restrict uid values for group join requests, which allows remote malicious users to cause a denial of service (resource consumption) by using guest access to submit join request forms for moderated groups, related to us...
Mybb Mybb 1.2.10
Mybb Mybb 1.2.8
Mybb Mybb 1.4.3
Mybb Mybb 1.04
Mybb Mybb 1.1.1
Mybb Mybb 1.1.3
Mybb Mybb 1.2.2
Mybb Mybb 1.2.9
Mybb Mybb 1.4.8
Mybb Mybb 1.2.1
Mybb Mybb 1.01
Mybb Mybb 1.1.6
Mybb Mybb 1.2.6
Mybb Mybb 1.4.0
Mybb Mybb 1.2.0
Mybb Mybb 1.4.9
Mybb Mybb 1.02
Mybb Mybb 1.2.5
Mybb Mybb 1.4.2
Mybb Mybb 1.1.8
Mybb Mybb 1.2.11
Mybb Mybb 1.1.5
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-28995
CVE-2024-36680
CVE-2024-35537
unauthorized
CVE-2024-21518
CVE-2024-37673
cross-site scripting
SSRF
CVE-2024-6241
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »