CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96226 | CVE-2016-9406 | Candidate | Cross-site scripting (XSS) vulnerability in the User control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96227 | CVE-2016-9407 | Candidate | Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving Mod control panel logs. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96228 | CVE-2016-9408 | Candidate | Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving editing users. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96229 | CVE-2016-9409 | Candidate | Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving pruning logs. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96230 | CVE-2016-9410 | Candidate | MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to obtain sensitive database information via vectors involving templates. | Assigned (20161117) | None (candidate not yet proposed) | View |
Page 19246 of 20943, showing 5 records out of 104715 total, starting on record 96226, ending on 96230