CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96227  CVE-2016-9407  Candidate  Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving Mod control panel logs.  Assigned (20161117)  None (candidate not yet proposed)    View
96228  CVE-2016-9408  Candidate  Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving editing users.  Assigned (20161117)  None (candidate not yet proposed)    View
96229  CVE-2016-9409  Candidate  Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving pruning logs.  Assigned (20161117)  None (candidate not yet proposed)    View
96230  CVE-2016-9410  Candidate  MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to obtain sensitive database information via vectors involving templates.  Assigned (20161117)  None (candidate not yet proposed)    View
96231  CVE-2016-9411  Candidate  The Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to obtain the installation path via vectors involving sending mails.  Assigned (20161117)  None (candidate not yet proposed)    View

Page 18639 of 20943, showing 5 records out of 104715 total, starting on record 93191, ending on 93195

Actions