CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96227 | CVE-2016-9407 | Candidate | Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving Mod control panel logs. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96228 | CVE-2016-9408 | Candidate | Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving editing users. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96229 | CVE-2016-9409 | Candidate | Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving pruning logs. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96230 | CVE-2016-9410 | Candidate | MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to obtain sensitive database information via vectors involving templates. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96231 | CVE-2016-9411 | Candidate | The Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to obtain the installation path via vectors involving sending mails. | Assigned (20161117) | None (candidate not yet proposed) | View |
Page 18639 of 20943, showing 5 records out of 104715 total, starting on record 93191, ending on 93195