Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-9241

Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) 1.8.x before 1.8.2 allow remote attackers to inject arbitrary web script or HTML via the (1) type parameter to report.php, (2) signature parameter in a do_editsig action to usercp.php, or (3) title parameter in the style-templates module in an edit_template action or (4) file parameter in the config-languages module in an edit action to admin/index.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.2%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2014-9241
  • Mybb » Mybb » Version: 1.8.0
    cpe:2.3:a:mybb:mybb:1.8.0
  • Mybb » Mybb » Version: 1.8.1
    cpe:2.3:a:mybb:mybb:1.8.1


Contact Us

Shodan ® - All rights reserved