PT-2005-4530 · Mybulletinboard · Mybb
Syini666
·
Published
2005-11-23
·
Updated
2016-10-18
·
CVE-2005-3777
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
MyBulletinBoard (MyBB) version 1.0 PR2 Rev 686
Description
The issue allows remote attackers to delete or move private messages (PM) by modifying fields in the inbox form.
Recommendations
For MyBB version 1.0 PR2 Rev 686, as a temporary workaround, consider restricting access to the inbox form until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mybb