3.5
CVSSv2

CVE-2006-1281

Published: 19/03/2006 Updated: 18/10/2018
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in member.php in MyBulletinBoard (MyBB) 1.04 allows remote malicious users to inject arbitrary web script or HTML via the url parameter, a different vulnerability than CVE-2006-1272. NOTE: 1.10 was later reported to be vulnerable.

Vulnerable Product Search on Vulmon Subscribe to Product

mybulletinboard mybulletinboard 1.0_pr2

mybulletinboard mybulletinboard 1.10

mybulletinboard mybulletinboard rc1

mybulletinboard mybulletinboard rc2

mybulletinboard mybulletinboard 1.0.1

mybulletinboard mybulletinboard 1.0.2

mybulletinboard mybulletinboard rc3

mybulletinboard mybulletinboard rc4

mybulletinboard mybulletinboard 1.0.3

mybulletinboard mybulletinboard 1.0.4

mybulletinboard mybulletinboard 1.0_final