Vulnerability index

Browse CVEs

25 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2008-0382EPSS 42% Multiple eval injection vulnerabilities in MyBB 1.2.10 and earlier allow remote attackers to execute arbitrary code via the sortby parameter to (1) f… Mybulletinboard No fix yet Fix from $1,9502008-01-22 MEDIUM 5.1 CVE-2006-4972 Cross-site scripting (XSS) vulnerability in archive/index.php/forum-4.html in MyBB (aka MyBulletinBoard) allows remote attackers to inject arbitrary … Mybulletinboard Mitigation only Fix from $1,6002006-09-25 MEDIUM 5.0 CVE-2006-4971 MyBB (aka MyBulletinBoard) allows remote attackers to obtain sensitive information via a direct request for inc/plugins/hello.php, which reveals the … Mybulletinboard Mitigation only Fix from $1,6002006-09-25 MEDIUM 5.0 CVE-2006-3954 Directory traversal vulnerability in usercp.php in MyBB (aka MyBulletinBoard) 1.x allows remote attackers to read arbitrary files via a .. (dot dot) … Mybulletinboard No fix yet Fix from $1,6002006-08-01 HIGH 7.5 CVE-2006-3775 SQL injection vulnerability in the init function in class_session.php in MyBB (aka MyBulletinBoard) 1.1.5 allows remote attackers to execute arbitrar… Mybulletinboard No fix yet Fix from $1,9502006-07-24 HIGH 7.5 CVE-2006-3420 Cross-site request forgery (CSRF) vulnerability in editpost.php in MyBulletinBoard (MyBB) before 1.1.5 allows remote attackers to perform unauthorize… Mybulletinboard Mitigation only Fix from $1,9502006-07-07 MEDIUM 6.4 CVE-2006-2589 SQL injection vulnerability in rss.php in MyBB (aka MyBulletinBoard) 1.1.1 allows remote attackers to execute arbitrary SQL commands via the comma pa… Mybulletinboard Mitigation only Fix from $1,6002006-05-25 MEDIUM 6.4 CVE-2006-2333 Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) 1.1.1 allow remote attackers to execute arbitrary SQL commands via the e-mail ad… Mybulletinboard No fix yet Fix from $1,6002006-05-12 MEDIUM 6.4 CVE-2006-2336 SQL injection vulnerability in showthread.php in MyBB (aka MyBulletinBoard) 1.1.1 allows remote attackers to execute arbitrary SQL commands via the c… Mybulletinboard Mitigation only Fix from $1,6002006-05-12 HIGH 7.5 CVE-2006-1974 SQL injection vulnerability in index.php in MyBB (MyBulletinBoard) before 1.04 allows remote attackers to execute arbitrary SQL commands via the refe… Mybulletinboard No fix yet Fix from $1,9502006-04-21 MEDIUM 5.8 CVE-2006-1912 MyBB (MyBulletinBoard) 1.1.0 does not set the constant KILL_GLOBAL variable in (1) global.php and (2) inc/init.php, which allows remote attackers to … Mybulletinboard Mitigation only Fix from $1,6002006-04-20 MEDIUM 5.1 CVE-2006-1716 Cross-site scripting (XSS) vulnerability in inc/functions_post.php in MyBB (aka MyBulletinBoard) 1.10 allows remote attackers to inject arbitrary web… Mybulletinboard Mitigation only Fix from $1,6002006-04-11 MEDIUM 5.1 CVE-2006-1717 Cross-site scripting (XSS) vulnerability in newthread.php in MyBB (aka MyBulletinBoard) 1.10, when configured to permit new threads by unregistered u… Mybulletinboard Mitigation only Fix from $1,6002006-04-11 MEDIUM 6.8 CVE-2006-1625 Cross-site scripting (XSS) vulnerability in inc/functions_post.php in MyBB (aka MyBulletinBoard) 1.10 allows remote attackers to inject arbitrary web… Mybulletinboard Mitigation only Fix from $1,6002006-04-05 MEDIUM 5.0 CVE-2006-1345 polls.php in MyBB (aka MyBulletinBoard) 1.10 allows remote attackers to obtain sensitive information via a vote action with an "option[]=null" parame… Mybulletinboard Mitigation only Fix from $1,6002006-03-22 MEDIUM 5.0 CVE-2006-1065 SQL injection vulnerability in search.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to execute arbitrary SQL commands via the forums[] p… Mybulletinboard No fix yet Fix from $1,6002006-03-07 HIGH 7.5 CVE-2006-0959 SQL injection vulnerability in misc.php in MyBulletinBoard (MyBB) 1.03, when register_globals is enabled, allows remote attackers to execute arbitrar… Mybulletinboard No fix yet Fix from $1,9502006-03-02 MEDIUM 6.5 CVE-2006-0638 SQL injection vulnerability in moderation.php in MyBB (aka MyBulletinBoard) 1.0.3 allows remote authenticated users, with certain privileges for mode… Mybulletinboard No fix yet Fix from $1,6002006-02-10 MEDIUM 5.0 CVE-2006-0406 search.php in MyBB 1.0.2 allows remote attackers to obtain sensitive information via a certain search request that reveals the table prefix in a SQL … Mybulletinboard No fix yet Fix from $1,6002006-01-25 MEDIUM 5.0 CVE-2005-3777 MyBulletinBoard (MyBB) 1.0 PR2 Rev 686 allows remote attackers to delete or move private messages (PM) via modified fields in the inbox form. Mybulletinboard Mitigation only Fix from $1,6002005-11-23 HIGH 7.5 CVE-2005-3326 SQL injection vulnerability in usercp.php in MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the awayday paramet… Mybulletinboard No fix yet Fix from $1,9502005-10-27 HIGH 7.5 CVE-2005-2778 SQL injection vulnerability in member.php in MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL statements via the fid parameter. Mybulletinboard No fix yet Fix from $1,9502005-09-02 HIGH 7.5 CVE-2005-2697 SQL injection vulnerability in search.php for MyBulletinBoard (MyBB) 1.00 Release Candidate 1 through 4 allows remote attackers to execute arbitrary … Mybulletinboard Mitigation only Fix from $1,9502005-08-26 HIGH 7.5 CVE-2005-2580 Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 with Security Patch allow remote attackers to execute arbitrary SQL command… Mybulletinboard Mitigation only Fix from $1,9502005-08-16 HIGH 7.5 CVE-2005-0282 SQL injection vulnerability in member.php in MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the uid parameter. Mybulletinboard No fix yet Fix from $1,9502005-05-02