Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-0689

MyBB 1.2.4 allows remote attackers to obtain sensitive information via the (1) action[] parameter to member.php, (2) imagehash[] parameter to captcha.php, and (3) a direct request to inc/datahandlers/event.php, which reveal the installation path in the resulting error message.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.6%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2007-0689
  • Mybb » Mybb » Version: 1.0
    cpe:2.3:a:mybb:mybb:1.0
  • Mybb » Mybb » Version: 1.0.2
    cpe:2.3:a:mybb:mybb:1.0.2
  • Mybb » Mybb » Version: 1.00
    cpe:2.3:a:mybb:mybb:1.00
  • Mybb » Mybb » Version: 1.01
    cpe:2.3:a:mybb:mybb:1.01
  • Mybb » Mybb » Version: 1.02
    cpe:2.3:a:mybb:mybb:1.02
  • Mybb » Mybb » Version: 1.1.0
    cpe:2.3:a:mybb:mybb:1.1.0
  • Mybb » Mybb » Version: 1.1.1
    cpe:2.3:a:mybb:mybb:1.1.1
  • Mybb » Mybb » Version: 1.1.2
    cpe:2.3:a:mybb:mybb:1.1.2
  • Mybb » Mybb » Version: 1.1.3
    cpe:2.3:a:mybb:mybb:1.1.3
  • Mybb » Mybb » Version: 1.1.4
    cpe:2.3:a:mybb:mybb:1.1.4
  • Mybb » Mybb » Version: 1.1.5
    cpe:2.3:a:mybb:mybb:1.1.5
  • Mybb » Mybb » Version: 1.1.6
    cpe:2.3:a:mybb:mybb:1.1.6
  • Mybb » Mybb » Version: 1.1.7
    cpe:2.3:a:mybb:mybb:1.1.7
  • Mybb » Mybb » Version: 1.1.8
    cpe:2.3:a:mybb:mybb:1.1.8
  • Mybb » Mybb » Version: 1.2
    cpe:2.3:a:mybb:mybb:1.2
  • Mybb » Mybb » Version: 1.2.0
    cpe:2.3:a:mybb:mybb:1.2.0
  • Mybb » Mybb » Version: 1.2.1
    cpe:2.3:a:mybb:mybb:1.2.1
  • Mybb » Mybb » Version: 1.2.2
    cpe:2.3:a:mybb:mybb:1.2.2
  • Mybb » Mybb » Version: 1.2.3
    cpe:2.3:a:mybb:mybb:1.2.3
  • Mybb » Mybb » Version: 1.2.4
    cpe:2.3:a:mybb:mybb:1.2.4


Contact Us

Shodan ® - All rights reserved