Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-16781 |
|
The installer in MyBB before 1.8.13 has XSS.
The installer in MyBB before 1.8.13 has XSS.
|
| CVE-2017-16780 |
|
Cross-Site Request Forgery (CSRF) in mybb (CVE-2017-16780)
vulnerability in mybb (CVE-2017-16780). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8104 |
|
In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter.
In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter.
|
| CVE-2017-8103 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2017-8103)
cross-site scripting in mybb (CVE-2017-8103). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-7566 |
|
MyBB before 1.8.11 allows remote attackers to bypass an SSRF protection mechanism.
MyBB before 1.8.11 allows remote attackers to bypass an SSRF protection mechanism.
|
| CVE-2016-9412 |
|
Vulnerability in mybb (CVE-2016-9412)
vulnerability in mybb (CVE-2016-9412). Successful exploitation can lead to full system takeover.
|
| CVE-2016-9421 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9421)
cross-site scripting in mybb (CVE-2016-9421). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9420 |
|
Vulnerability in mybb (CVE-2016-9420)
vulnerability in mybb (CVE-2016-9420). Successful exploitation can lead to full system takeover.
|
| CVE-2016-9419 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9419)
cross-site scripting in mybb (CVE-2016-9419). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9418 |
|
Information Disclosure in mybb (CVE-2016-9418)
vulnerability in mybb (CVE-2016-9418). Confidential information can be exposed externally.
|
| CVE-2016-9417 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2016-9417)
SSRF in ssrf (CVE-2016-9417). Data can be tampered with by attackers.
|
| CVE-2016-9416 |
|
SQL Injection in sqli (CVE-2016-9416)
SQL injection in sqli (CVE-2016-9416). Successful exploitation can lead to full system takeover.
|
| CVE-2016-9415 |
|
Vulnerability in mybb (CVE-2016-9415)
vulnerability in mybb (CVE-2016-9415). Data can be tampered with by attackers.
|
| CVE-2016-9414 |
|
Information Disclosure in mybb (CVE-2016-9414)
vulnerability in mybb (CVE-2016-9414). Confidential information can be exposed externally.
|
| CVE-2016-9413 |
|
Vulnerability in mybb (CVE-2016-9413)
vulnerability in mybb (CVE-2016-9413). Data can be tampered with by attackers.
|
| CVE-2016-9411 |
|
Information Disclosure in mybb (CVE-2016-9411)
vulnerability in mybb (CVE-2016-9411). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9410 |
|
Information Disclosure in mybb (CVE-2016-9410)
vulnerability in mybb (CVE-2016-9410). Confidential information can be exposed externally.
|
| CVE-2016-9409 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9409)
cross-site scripting in mybb (CVE-2016-9409). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9408 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9408)
cross-site scripting in mybb (CVE-2016-9408). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9407 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9407)
cross-site scripting in mybb (CVE-2016-9407). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9406 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9406)
cross-site scripting in mybb (CVE-2016-9406). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9405 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9405)
cross-site scripting in mybb (CVE-2016-9405). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9404 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2016-9404)
cross-site scripting in mybb (CVE-2016-9404). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-9403 |
|
Vulnerability in mybb (CVE-2016-9403)
vulnerability in mybb (CVE-2016-9403). Successful exploitation can lead to full system takeover.
|
| CVE-2016-9402 |
|
SQL Injection in sqli (CVE-2016-9402)
SQL injection in sqli (CVE-2016-9402). Successful exploitation can lead to full system takeover.
|
| CVE-2015-8973 |
|
Vulnerability in mybb (CVE-2015-8973)
vulnerability in mybb (CVE-2015-8973). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8977 |
|
Vulnerability in mybb (CVE-2015-8977)
vulnerability in mybb (CVE-2015-8977). Confidential information can be exposed externally.
|
| CVE-2015-8976 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2015-8976)
cross-site scripting in mybb (CVE-2015-8976). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8975 |
|
Cross-Site Scripting (XSS) in mybb (CVE-2015-8975)
cross-site scripting in mybb (CVE-2015-8975). Risk of unauthorized operations or information disclosure.
|
| CVE-2015-8974 |
|
SQL Injection in sqli (CVE-2015-8974)
SQL injection in sqli (CVE-2015-8974). Successful exploitation can lead to full system takeover.
|