İçeriğe atla
Noroxi

mybb kayıtları

mybb üreticisine ait 156 yayımlanmış kayıt.

Tüm kayıtlar

156 kayıt
  • CVE-2022-24734
    51Planlayın

    Remote code execution in mybb

    YüksekCVSS 7,2SilahlaştırılmışEPSS %78

    mybb · mybb9 Mar 2022

  • CVE-2018-17128
    43Planlayın

    A Persistent XSS issue was discovered in the Visual Editor in MyBB before 1.8.19 via a Video MyCode.

    OrtaCVSS 5,4Kavram kanıtıEPSS %75

    mybb · mybb17 Eyl 2018

  • CVE-2017-16780
    41Planlayın

    The installer in MyBB before 1.8.13 allows remote attackers to execute arbitrary code by writing to the configuration file.

    KritikCVSS 9,8Kavram kanıtıEPSS %6

    mybb · mybb10 Kas 2017

  • CVE-2015-8974
    41Planlayın

    SQL injection vulnerability in the Group Promotions module in the admin control panel in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x

    KritikCVSS 10,0İstismar yokEPSS %2

    mybb · merge system31 Oca 2017

  • CVE-2011-10018
    41Planlayın

    myBB 1.6.4 Backdoor Arbitrary Command Execution

    KritikCVSS 10,0SilahlaştırılmışEPSS %2

    mybb · mybb13 Ağu 2025

  • CVE-2011-5133
    41Planlayın

    Unspecified vulnerability in MyBB before 1.6.5 has unknown impact and attack vectors, related to an "unparsed user avatar in the buddy list.

    KritikCVSS 10,0İstismar yokEPSS %2

    mybb · mybb30 Ağu 2012

  • CVE-2016-9403
    40Planlayın

    newreply.php in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allows remote attackers to have unspecified impac

    KritikCVSS 9,8İstismar yokEPSS %3

    mybb · merge system31 Oca 2017

  • CVE-2016-9420
    40Planlayın

    MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allow remote attackers to have unspecified impact via vectors rel

    KritikCVSS 9,8İstismar yokEPSS %3

    mybb · merge system31 Oca 2017

  • CVE-2016-9412
    40Planlayın

    MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allow attackers to have unspecified impact via vectors related to

    KritikCVSS 9,8İstismar yokEPSS %2

    mybb · merge system31 Oca 2017

  • CVE-2016-9402
    40Planlayın

    SQL injection vulnerability in the moderation tool in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow

    KritikCVSS 9,8İstismar yokEPSS %2

    mybb · merge system31 Oca 2017

  • CVE-2016-9416
    40Planlayın

    SQL injection vulnerability in the users data handler in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows r

    KritikCVSS 9,8İstismar yokEPSS %2

    mybb · merge system31 Oca 2017

  • CVE-2015-2786
    40Planlayın

    Unspecified vulnerability in MyBB (aka MyBulletinBoard) before 1.8.4 has unknown attack vectors related to "Group join request notifications

    KritikCVSS 10,0İstismar yokEPSS %1

    mybb · mybb29 Mar 2015

  • CVE-2006-0218
    40Planlayın

    Multiple unspecified vulnerabilities in MyBulletinBoard (MyBB) before 1.0.2 have unspecified impact and attack vectors, related to (1) admin

    KritikCVSS 10,0İstismar yokEPSS %1

    mybb · mybb16 Oca 2006

  • CVE-2018-14392
    39İzleyin

    The New Threads plugin before 1.2 for MyBB has XSS.

    OrtaCVSS 6,1Kavram kanıtıEPSS %49

    mybb · new threads18 Tem 2018

  • CVE-2020-22612
    39İzleyin

    Installer RCE on settings file write in MyBB before 1.8.22.

    KritikCVSS 9,8İstismar yokEPSS %1

    mybb · mybb1 Eyl 2023

  • CVE-2021-27890
    38İzleyin

    SQL Injection vulnerablity in MyBB before 1.8.26 via theme properties included in theme XML files.

    YüksekCVSS 8,8Kavram kanıtıEPSS %11

    mybb · mybb15 Mar 2021

  • CVE-2021-27946
    36İzleyin

    SQL Injection vulnerability in MyBB before 1.8.26 via poll vote count.

    YüksekCVSS 8,8Kavram kanıtıEPSS %4

    mybb · mybb15 Mar 2021

  • CVE-2018-14575
    36İzleyin

    Trash Bin plugin 1.1.3 for MyBB has cross-site scripting (XSS) via a thread subject and a cross-site request forgery (CSRF) via a post subje

    YüksekCVSS 8,8Kavram kanıtıEPSS %2

    mybb · trash bin21 Mar 2019

  • CVE-2019-12830
    34İzleyin

    In MyBB before 1.8.21, an attacker can exploit a parsing flaw in the Private Message / Post renderer that leads to [video] BBCode persistent

    YüksekCVSS 8,7İstismar yokEPSS %1

    mybb · mybb15 Haz 2019

  • CVE-2023-53979
    34İzleyin

    MyBB 1.8.32 Authenticated Remote Code Execution via Chained Vulnerabilities

    YüksekCVSS 8,6İstismar yokEPSS %1

    mybb · mybb22 Ara 2025

  • CVE-2015-8973
    33İzleyin

    xmlhttp.php in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allows remote attackers to

    YüksekCVSS 8,3İstismar yokEPSS %2

    mybb · merge system31 Oca 2017

  • CVE-2010-5096
    32İzleyin

    Multiple SQL injection vulnerabilities in MyBB (aka MyBulletinBoard) before 1.6.1 allow remote attackers to execute arbitrary SQL commands v

    YüksekCVSS 7,5Kavram kanıtıEPSS %6

    mybb · mybb13 Ağu 2012

  • CVE-2014-9240
    31İzleyin

    SQL injection vulnerability in member.php in MyBB (aka MyBulletinBoard) 1.8.x before 1.8.2 allows remote attackers to execute arbitrary SQL

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    mybb · mybb3 Ara 2014

  • CVE-2013-6936
    31İzleyin

    Multiple SQL injection vulnerabilities in ajaxfs.php in the Ajax forum stat (Ajaxfs) Plugin 2.0 for MyBB (aka MyBulletinBoard) allow remote

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    mybb · ajax forum stat4 Ara 2013

  • CVE-2016-9414
    31İzleyin

    MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allow remote attackers to obtain sensitive information by leverag

    YüksekCVSS 7,5İstismar yokEPSS %2

    mybb · merge system31 Oca 2017