10

CVE-2006-0218

Multiple unspecified vulnerabilities in MyBulletinBoard (MyBB) before 1.0.2 have unspecified impact and attack vectors, related to (1) admin/moderate.php, (2) admin/themes.php, (3) inc/functions.php, (4) inc/functions_upload.php, (5) printthread.php, and (6) usercp.php, and probably related to SQL injection.  NOTE: it is likely that this issue subsumes CVE-2005-4602 and CVE-2005-4603.  However, since the vendor advisory is vague and additional files are mentioned, is is likely that this contains at least one distinct vulnerability from CVE-2005-4602 and CVE-2005-4603.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mybb ≫ Mybb Version <= 1.01
Mybb ≫ Mybb Version 1.00
Mybb ≫ Mybb Version 1.0 Update beta4
Mybb ≫ Mybb Version 1.0 Update pr1
Mybb ≫ Mybb Version 1.0 Update pr2
Mybb ≫ Mybb Version 1.0 Update rc1
Mybb ≫ Mybb Version 1.0 Update rc2
Mybb ≫ Mybb Version 1.0 Update rc3
Mybb ≫ Mybb Version 1.0 Update rc4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.2% 0.644
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://community.mybboard.net/showthread.php?tid=5852
Patch
Vendor Advisory