Vulnerabilities > CVE-2007-0544 - Unspecified vulnerability in Mybb 1.2.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Cross-site scripting (XSS) vulnerability in private.php in MyBB (aka MyBulletinBoard) allows remote authenticated users to inject arbitrary web script or HTML via the Subject field, a different vector than CVE-2006-2949.
References
- http://osvdb.org/32967
- http://osvdb.org/32967
- http://secunia.com/advisories/23934
- http://secunia.com/advisories/23934
- http://secunia.com/advisories/28837
- http://secunia.com/advisories/28837
- http://www.securityfocus.com/archive/1/457929/100/0/threaded
- http://www.securityfocus.com/archive/1/457929/100/0/threaded
- http://www.securityfocus.com/bid/22205
- http://www.securityfocus.com/bid/22205
- https://exchange.xforce.ibmcloud.com/vulnerabilities/31740
- https://exchange.xforce.ibmcloud.com/vulnerabilities/31740