Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2006-0470
Cross-site scripting (XSS) vulnerability in search.php in MyBulletinBoard (MyBB) 1.02 allows remote attackers to inject arbitrary web script or HTML via the (1) sortby and (2) sortordr parameters, which are not properly handled in a redirection.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.012
EPSS Ranking
78.4%
CVSS Severity
CVSS v2 Score
4.3
References
http://community.mybboard.net/attachment.php?aid=2181
http://community.mybboard.net/showthread.php?tid=6418
http://seclists.org/lists/bugtraq/2006/Jan/0414.html
http://secunia.com/advisories/18617
http://securityreason.com/securityalert/374
http://www.osvdb.org/22750
http://www.securityfocus.com/bid/16387
http://www.vupen.com/english/advisories/2006/0350
https://exchange.xforce.ibmcloud.com/vulnerabilities/24466
http://community.mybboard.net/attachment.php?aid=2181
http://community.mybboard.net/showthread.php?tid=6418
http://seclists.org/lists/bugtraq/2006/Jan/0414.html
http://secunia.com/advisories/18617
http://securityreason.com/securityalert/374
http://www.osvdb.org/22750
http://www.securityfocus.com/bid/16387
http://www.vupen.com/english/advisories/2006/0350
https://exchange.xforce.ibmcloud.com/vulnerabilities/24466
Products affected by CVE-2006-0470
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0.1
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0.1
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0.2
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0.2
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0_final
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0_final
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0_pr2
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0_pr2
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0_preview_release_2
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0_preview_release_2
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0_rc2
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0_rc2
Mybulletinboard
»
Mybulletinboard
»
Version:
1.0_rc4
cpe:2.3:a:mybulletinboard:mybulletinboard:1.0_rc4
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved