5
CVSSv2

CVE-2010-4629

Published: 30/12/2010 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

MyBB (aka MyBulletinBoard) prior to 1.4.12 does not properly restrict uid values for group join requests, which allows remote malicious users to cause a denial of service (resource consumption) by using guest access to submit join request forms for moderated groups, related to usercp.php and managegroup.php.

Vulnerable Product Search on Vulmon Subscribe to Product

mybb mybb 1.4.6

mybb mybb 1.4.3

mybb mybb 1.2

mybb mybb 1.2.9

mybb mybb 1.2.4

mybb mybb 1.2.5

mybb mybb 1.1.0

mybb mybb 1.1.3

mybb mybb 1.4.2

mybb mybb 1.4.0

mybb mybb 1.2.8

mybb mybb 1.2.6

mybb mybb 1.2.7

mybb mybb 1.1.7

mybb mybb 1.1.6

mybb mybb 1.1.1

mybb mybb 1.00

mybb mybb

mybb mybb 1.4.10

mybb mybb 1.2.11

mybb mybb 1.2.12

mybb mybb 1.2.13

mybb mybb 1.2.1

mybb mybb 1.1.8

mybb mybb 1.1.4

mybb mybb 1.02

mybb mybb 1.01

mybb mybb 1.4.9

mybb mybb 1.4.8

mybb mybb 1.2.10

mybb mybb 1.2.0

mybb mybb 1.2.2

mybb mybb 1.2.3

mybb mybb 1.1.5

mybb mybb 1.1.2

mybb mybb 1.04

mybb mybb 1.03