CVE-2014-9240
03.12.2014, 21:59
SQL injection vulnerability in member.php in MyBB (aka MyBulletinBoard) 1.8.x before 1.8.2 allows remote attackers to execute arbitrary SQL commands via the question_id parameter in a do_register action.
Vendor | Product | Version |
---|---|---|
mybb | mybb | 1.8.0 |
mybb | mybb | 1.8.1 |
𝑥
= Vulnerable software versions
References