Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mybb mybb vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-9241
Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) 1.8.x prior to 1.8.2 allow remote malicious users to inject arbitrary web script or HTML via the (1) type parameter to report.php, (2) signature parameter in a do_editsig action to usercp.php, or (3...
Mybb Mybb 1.8.1
Mybb Mybb 1.8.0
1 EDB exploit
NA
CVE-2010-4522
Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) 1.4.14, and 1.6.x prior to 1.6.1, allow remote malicious users to inject arbitrary web script or HTML via vectors related to (1) editpost.php, (2) member.php, and (3) newreply.php.
Mybb Mybb 1.4.14
Mybb Mybb 1.6.0
7.5
CVSSv3
CVE-2016-9415
MyBB (aka MyBulletinBoard) prior to 1.8.8 on Windows and MyBB Merge System prior to 1.8.8 on Windows allow remote malicious users to overwrite arbitrary CSS files via vectors related to "style import."
Mybb Mybb
Mybb Merge System
7.5
CVSSv3
CVE-2016-9418
MyBB (aka MyBulletinBoard) prior to 1.8.8 on Windows and MyBB Merge System prior to 1.8.8 on Windows might allow remote malicious users to obtain sensitive information from ACP backups via vectors involving a short name.
Mybb Mybb
Mybb Merge System
9.8
CVSSv3
CVE-2016-9402
SQL injection vulnerability in the moderation tool in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Mybb Mybb
Mybb Merge System
6.1
CVSSv3
CVE-2016-9404
Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to inject arbitrary web script or HTML via vectors related to login.
Mybb Mybb
Mybb Merge System
6.1
CVSSv3
CVE-2016-9405
Cross-site scripting (XSS) vulnerability in member validation in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Mybb Mybb
Mybb Merge System
6.1
CVSSv3
CVE-2016-9406
Cross-site scripting (XSS) vulnerability in the User control panel in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Mybb Merge System
Mybb Mybb
6.1
CVSSv3
CVE-2016-9407
Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to inject arbitrary web script or HTML via vectors involving Mod control panel logs.
Mybb Merge System
Mybb Mybb
6.1
CVSSv3
CVE-2016-9408
Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) prior to 1.8.7 and MyBB Merge System prior to 1.8.7 might allow remote malicious users to inject arbitrary web script or HTML via vectors involving editing users.
Mybb Mybb
Mybb Merge System
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
remote code execution
CVE-2024-34909
CVE-2024-3317
SSTI
CVE-2024-3400
CVE-2024-30051
wireless
CVE-2024-4622
CVE-2024-4908
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »