6.8
CVSSv2

CVE-2011-5131

Published: 30/08/2012 Updated: 29/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in global.php in MyBB prior to 1.6.5 allows remote malicious users to hijack the authentication of a user for requests that change the user's language via the language parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

mybb mybb 1.4.8

mybb mybb 1.4.6

mybb mybb 1.4.16

mybb mybb 1.4.15

mybb mybb 1.3

mybb mybb 1.2.11

mybb mybb 1.2.6

mybb mybb 1.2.7

mybb mybb 1.1.7

mybb mybb 1.1.6

mybb mybb 1.1.1

mybb mybb

mybb mybb 1.6.0

mybb mybb 1.6.1

mybb mybb 1.4.10

mybb mybb 1.4.9

mybb mybb 1.4.13

mybb mybb 1.4.12

mybb mybb 1.2.12

mybb mybb 1.2.10

mybb mybb 1.2.13

mybb mybb 1.2.2

mybb mybb 1.1.8

mybb mybb 1.1.4

mybb mybb 1.6.2

mybb mybb 1.6.3

mybb mybb 1.5.1

mybb mybb 1.4.11

mybb mybb 1.4.14

mybb mybb 1.4.7

mybb mybb 1.4.5

mybb mybb 1.2.0

mybb mybb 1.2

mybb mybb 1.2.14

mybb mybb 1.2.1

mybb mybb 1.2.3

mybb mybb 1.1.5

mybb mybb 1.1.2

mybb mybb 1.5.2

mybb mybb 1.4.3

mybb mybb 1.4.4

mybb mybb 1.4.1

mybb mybb 1.4.0

mybb mybb 1.4.2

mybb mybb 1.2.9

mybb mybb 1.2.8

mybb mybb 1.2.4

mybb mybb 1.2.5

mybb mybb 1.1.0

mybb mybb 1.1.3