Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mybulletinboard mybulletinboard 1.2.5 vulnerabilities and exploits
(subscribe to this query)
534
VMScore
CVE-2007-1964
member.php in MyBB (aka MyBulletinBoard), when debug mode is available, allows remote authenticated users to change the password of any account by providing the account's registered e-mail address in a debug request for a do_lostpw action, which prints the change password ve...
Mybb Mybb 1.2.5
Mybulletinboard Mybulletinboard 1.2.5
760
VMScore
CVE-2008-0382
Multiple eval injection vulnerabilities in MyBB 1.2.10 and previous versions allow remote malicious users to execute arbitrary code via the sortby parameter to (1) forumdisplay.php or (2) a results action in search.php.
Mybulletinboard Mybulletinboard 1.0
Mybulletinboard Mybulletinboard 1.0.1
Mybulletinboard Mybulletinboard 1.1.3
Mybulletinboard Mybulletinboard 1.1.4
Mybulletinboard Mybulletinboard 1.2.3
Mybulletinboard Mybulletinboard 1.2.5
Mybulletinboard Mybulletinboard 1.0.2
Mybulletinboard Mybulletinboard 1.0.3
Mybulletinboard Mybulletinboard 1.1.5
Mybulletinboard Mybulletinboard 1.1.7
Mybulletinboard Mybulletinboard 1.0.4
Mybulletinboard Mybulletinboard 1.0 Pr2
Mybulletinboard Mybulletinboard 1.1
Mybulletinboard Mybulletinboard 1.1.8
Mybulletinboard Mybulletinboard 1.10
Mybulletinboard Mybulletinboard 1.1.1
Mybulletinboard Mybulletinboard 1.1.2
Mybulletinboard Mybulletinboard 1.2
Mybulletinboard Mybulletinboard 1.2.10
2 EDB exploits
755
VMScore
CVE-2009-2230
SQL injection vulnerability in inc/datahandlers/user.php in MyBB (aka MyBulletinBoard) prior to 1.4.7 allows remote authenticated users to execute arbitrary SQL commands via the birthdayprivacy parameter.
Mybulletinboard Mybulletinboard 1.1
Mybulletinboard Mybulletinboard 1.1.7
Mybulletinboard Mybulletinboard 1.1.6
Mybulletinboard Mybulletinboard 1.0.3
Mybulletinboard Mybulletinboard 1.0.4
Mybulletinboard Mybulletinboard 1.2.10
Mybulletinboard Mybulletinboard 1.2.11
Mybulletinboard Mybulletinboard 1.1.2
Mybulletinboard Mybulletinboard 1.0
Mybulletinboard Mybulletinboard 1.4.5
Mybulletinboard Mybulletinboard
Mybulletinboard Mybulletinboard 1.1.3
Mybulletinboard Mybulletinboard 1.2
Mybulletinboard Mybulletinboard 1.1.5
Mybulletinboard Mybulletinboard 1.1.4
Mybulletinboard Mybulletinboard 1.4.2
Mybulletinboard Mybulletinboard 1.4.3
Mybulletinboard Mybulletinboard 1.2.3
Mybulletinboard Mybulletinboard 1.2.5
Mybulletinboard Mybulletinboard 1.1.8
Mybulletinboard Mybulletinboard 1.0.1
Mybulletinboard Mybulletinboard 1.0.2
1 EDB exploit
655
VMScore
CVE-2008-0787
SQL injection vulnerability in inc/datahandlers/pm.php in MyBB prior to 1.2.12 allows remote authenticated users to execute arbitrary SQL commands via the options[disablesmilies] parameter to private.php.
Mybulletinboard Mybulletinboard 1.0.2
Mybulletinboard Mybulletinboard 1.0.3
Mybulletinboard Mybulletinboard 1.1.4
Mybulletinboard Mybulletinboard 1.1.5
Mybulletinboard Mybulletinboard 1.2.11
Mybulletinboard Mybulletinboard 1.2.3
Mybulletinboard Mybulletinboard 1.0
Mybulletinboard Mybulletinboard 1.0.1
Mybulletinboard Mybulletinboard 1.1.2
Mybulletinboard Mybulletinboard 1.1.3
Mybulletinboard Mybulletinboard 1.2
Mybulletinboard Mybulletinboard 1.2.10
Mybulletinboard Mybulletinboard 1.1
Mybulletinboard Mybulletinboard 1.1.1
Mybulletinboard Mybulletinboard 1.1.8
Mybulletinboard Mybulletinboard 1.10
Mybulletinboard Mybulletinboard Rc3
Mybulletinboard Mybulletinboard Rc4
Mybulletinboard Mybulletinboard 1.0.4
Mybulletinboard Mybulletinboard 1.0 Pr2
Mybulletinboard Mybulletinboard 1.1.6
Mybulletinboard Mybulletinboard 1.1.7
1 EDB exploit
755
VMScore
CVE-2007-2211
SQL injection vulnerability in calendar.php in MyBB (aka MyBulletinBoard) 1.2.5 and previous versions allows remote malicious users to execute arbitrary SQL commands via the day parameter in a dayview action.
Mybulletinboard Mybulletinboard
1 EDB exploit
755
VMScore
CVE-2007-2212
Multiple SQL injection vulnerabilities in calendar.php in MyBB (aka MyBulletinBoard) 1.2.5 and previous versions allow remote malicious users to execute arbitrary SQL commands via the (1) year or (2) month parameter. NOTE: the provenance of this information is unknown; the detail...
Mybb Mybb 1.2.5
1 EDB exploit
668
VMScore
CVE-2008-3967
moderation.php in MyBB (aka MyBulletinBoard) prior to 1.4.1 does not properly check for moderator privileges, which has unknown impact and remote attack vectors.
Mybb Mybb
Mybb Mybb 1.2.9
Mybb Mybb 1.2.8
Mybb Mybb 1.1.4
Mybb Mybb 1.1.5
Mybb Mybb 1.00
Mybb Mybb 1.2
Mybb Mybb 1.1.6
Mybb Mybb 1.1.8
Mybb Mybb 1.04
Mybb Mybb 1.03
Mybb Mybb 1.2.10
Mybb Mybb 1.2.0
Mybb Mybb 1.2.13
Mybb Mybb 1.1.7
Mybb Mybb 1.1.3
Mybb Mybb 1.02
Mybb Mybb 1.01
Mybb Mybb 1.2.4
Mybb Mybb 1.2.5
Mybb Mybb 1.1.1
Mybb Mybb 1.2.1
668
VMScore
CVE-2008-3965
SQL injection vulnerability in misc.php in MyBB (aka MyBulletinBoard) prior to 1.4.1 allows remote malicious users to execute arbitrary SQL commands via a certain editor field.
Mybb Mybb 1.2.12
Mybb Mybb 1.2.10
Mybb Mybb 1.2.7
Mybb Mybb 1.2.13
Mybb Mybb 1.1.7
Mybb Mybb 1.1.3
Mybb Mybb 1.02
Mybb Mybb 1.2.3
Mybb Mybb 1.2.4
Mybb Mybb
Mybb Mybb 1.2.11
Mybb Mybb 1.2.8
Mybb Mybb 1.2.6
Mybb Mybb 1.1.2
Mybb Mybb 1.1.0
Mybb Mybb 1.2.1
Mybb Mybb 1.2.2
Mybb Mybb 1.2
Mybb Mybb 1.2.9
Mybb Mybb 1.1.4
Mybb Mybb 1.1.5
Mybb Mybb 1.03
312
VMScore
CVE-2010-4624
MyBB (aka MyBulletinBoard) prior to 1.4.12 allows remote authenticated users to bypass intended restrictions on the number of [img] MyCodes by editing a post after it has been created.
Mybb Mybb 1.4.6
Mybb Mybb 1.4.3
Mybb Mybb 1.2
Mybb Mybb 1.2.9
Mybb Mybb 1.2.4
Mybb Mybb 1.2.5
Mybb Mybb 1.1.0
Mybb Mybb 1.1.3
Mybb Mybb 1.4.9
Mybb Mybb 1.4.8
Mybb Mybb 1.2.10
Mybb Mybb 1.2.0
Mybb Mybb 1.2.2
Mybb Mybb 1.2.3
Mybb Mybb 1.1.5
Mybb Mybb 1.1.2
Mybb Mybb 1.04
Mybb Mybb 1.03
Mybb Mybb 1.4.2
Mybb Mybb 1.4.0
Mybb Mybb 1.2.8
Mybb Mybb 1.2.6
605
VMScore
CVE-2010-4627
Cross-site request forgery (CSRF) vulnerability in usercp2.php in MyBB (aka MyBulletinBoard) prior to 1.4.12 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Mybb Mybb 1.4.3
Mybb Mybb 1.4.2
Mybb Mybb 1.2.9
Mybb Mybb 1.2.8
Mybb Mybb 1.2.4
Mybb Mybb 1.2.5
Mybb Mybb 1.1.7
Mybb Mybb 1.1.3
Mybb Mybb 1.1.1
Mybb Mybb
Mybb Mybb 1.4.0
Mybb Mybb 1.2.11
Mybb Mybb 1.2.6
Mybb Mybb 1.2.7
Mybb Mybb 1.1.6
Mybb Mybb 1.1.8
Mybb Mybb 1.00
Mybb Mybb 1.02
Mybb Mybb 1.4.10
Mybb Mybb 1.4.9
Mybb Mybb 1.2.12
Mybb Mybb 1.2.10
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »