5
CVSSv2

CVE-2008-4929

Published: 04/11/2008 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

MyBB (aka MyBulletinBoard) 1.4.2 uses insufficient randomness to compose filenames of uploaded files used as attachments, which makes it easier for remote malicious users to read these files by guessing filenames.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mybb mybb 1.4.2