Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-1963

SQL injection vulnerability in the create_session function in class_session.php in MyBB (aka MyBulletinBoard) 1.2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Client-IP HTTP header, as utilized by index.php, a related issue to CVE-2006-3775.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 75.4%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2007-1963
  • Mybb » Mybb » Version: 1.0
    cpe:2.3:a:mybb:mybb:1.0
  • Mybb » Mybb » Version: 1.0.2
    cpe:2.3:a:mybb:mybb:1.0.2
  • Mybb » Mybb » Version: 1.00
    cpe:2.3:a:mybb:mybb:1.00
  • Mybb » Mybb » Version: 1.01
    cpe:2.3:a:mybb:mybb:1.01
  • Mybb » Mybb » Version: 1.02
    cpe:2.3:a:mybb:mybb:1.02
  • Mybb » Mybb » Version: 1.1.0
    cpe:2.3:a:mybb:mybb:1.1.0
  • Mybb » Mybb » Version: 1.1.1
    cpe:2.3:a:mybb:mybb:1.1.1
  • Mybb » Mybb » Version: 1.1.2
    cpe:2.3:a:mybb:mybb:1.1.2
  • Mybb » Mybb » Version: 1.1.3
    cpe:2.3:a:mybb:mybb:1.1.3
  • Mybb » Mybb » Version: 1.1.4
    cpe:2.3:a:mybb:mybb:1.1.4
  • Mybb » Mybb » Version: 1.1.5
    cpe:2.3:a:mybb:mybb:1.1.5
  • Mybb » Mybb » Version: 1.1.6
    cpe:2.3:a:mybb:mybb:1.1.6
  • Mybb » Mybb » Version: 1.1.7
    cpe:2.3:a:mybb:mybb:1.1.7
  • Mybb » Mybb » Version: 1.1.8
    cpe:2.3:a:mybb:mybb:1.1.8
  • Mybb » Mybb » Version: 1.2
    cpe:2.3:a:mybb:mybb:1.2
  • Mybb » Mybb » Version: 1.2.0
    cpe:2.3:a:mybb:mybb:1.2.0
  • Mybb » Mybb » Version: 1.2.1
    cpe:2.3:a:mybb:mybb:1.2.1
  • Mybb » Mybb » Version: 1.2.2
    cpe:2.3:a:mybb:mybb:1.2.2
  • Mybb » Mybb » Version: 1.2.3
    cpe:2.3:a:mybb:mybb:1.2.3
  • Mybulletinboard » Mybulletinboard » Version: Any
    cpe:2.3:a:mybulletinboard:mybulletinboard:*


Contact Us

Shodan ® - All rights reserved