Secunia Logo
 
CVE Reference: CVE-2007-0544
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-0544

Description:
Cross-site scripting (XSS) vulnerability in private.php in MyBB (aka MyBulletinBoard) allows remote authenticated users to inject arbitrary web script or HTML via the Subject field, a different vector than CVE-2006-2949.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/31740

SAID
  Secunia Advisory: SA23934
  Secunia Advisory: SA28837

OSVDB
  32967

DEBIAN
  http://www.debian.org/security/2008/dsa-1493

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/457929/100/0/threaded

BID
  22205


Return to the previous page.