Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0383 (MyBB)

BugsAlert Home > CVE-2008-0383 (MyBB)
 
 

Multiple SQL injection vulnerabilities in MyBB 1.2.10 and earlier allow remote moderators and administrators to execute arbitrary SQL commands via (1) the mergepost parameter in a do_mergeposts action, (2) rid parameter in an allreports action, or (3) threads parameter in a do_multimovethreads action to (a) moderation.php; or (4) gid parameter to (b) admin/usergroups.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0383

Learn more about CVE-2008-0383 (MyBB)
 
Tags: cve-2008-0383 mybb

Related Items

      CVE-2007-6583 (1024 CMS)

      CVE-2008-3985 (e-business_suite)

      Pump-and-Dump Spammers Take On Amazon

      rPath Linux Security Update Fixes Multiple Package Command Execution

      TROJ_FAKEALER.IO

      jSite 1.0 OE (SQL/LFI) Multiple Remote Vulnerabilities

      SWF_ADHIJACK.D

 

Pixel