5

CVE-2010-4629

MyBB (aka MyBulletinBoard) before 1.4.12 does not properly restrict uid values for group join requests, which allows remote attackers to cause a denial of service (resource consumption) by using guest access to submit join request forms for moderated groups, related to usercp.php and managegroup.php.

Data is provided by the National Vulnerability Database (NVD)
MybbMybb Version <= 1.4.11
MybbMybb Version1.00
MybbMybb Version1.01
MybbMybb Version1.1.0
MybbMybb Version1.1.1
MybbMybb Version1.1.2
MybbMybb Version1.1.3
MybbMybb Version1.1.4
MybbMybb Version1.1.5
MybbMybb Version1.1.6
MybbMybb Version1.1.7
MybbMybb Version1.1.8
MybbMybb Version1.02
MybbMybb Version1.2
MybbMybb Version1.2.0
MybbMybb Version1.2.1
MybbMybb Version1.2.2
MybbMybb Version1.2.3
MybbMybb Version1.2.4
MybbMybb Version1.2.5
MybbMybb Version1.2.6
MybbMybb Version1.2.7
MybbMybb Version1.2.8
MybbMybb Version1.2.9
MybbMybb Version1.2.10
MybbMybb Version1.2.11
MybbMybb Version1.2.12
MybbMybb Version1.2.13
MybbMybb Version1.03
MybbMybb Version1.04
MybbMybb Version1.4.0
MybbMybb Version1.4.2
MybbMybb Version1.4.3
MybbMybb Version1.4.6
MybbMybb Version1.4.8
MybbMybb Version1.4.9
MybbMybb Version1.4.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.19% 0.769
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P