CVE

Id
96229  
CVE No.
CVE-2016-9409  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the Admin control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving pruning logs.  
Phase
Assigned (20161117)  
Votes
None (candidate not yet proposed)  
Comments