vulnerability

FreeBSD: VID-198A120D-C22D-11EA-9172-4C72B94353B5: mybb -- multible vulnerabilities

Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:N)
Published
Dec 30, 2019
Added
Jul 10, 2020
Modified
Feb 19, 2025

Description



mybb Team reports:



High risk: Installer RCE on settings file write


Medium risk: Arbitrary upload paths and Local File Inclusion RCE


Medium risk: XSS via insufficient HTML sanitization of Blog feed and Extend data


Low risk: Open redirect on login


Low risk: SCEditor reflected XSS




Solution

freebsd-upgrade-package-mybb

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.