Vulnerability Description
Unspecified vulnerability in MyBB (aka MyBulletinBoard) before 1.8.4 has unknown attack vectors related to "Group join request notifications sent to wrong group leaders."
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mybb | Mybb | <= 1.8.3 |
References
- http://blog.mybb.com/2015/02/15/mybb-1-8-4-released-feature-update-security-mainPatchVendor Advisory
- http://www.securityfocus.com/bid/73394
- http://blog.mybb.com/2015/02/15/mybb-1-8-4-released-feature-update-security-mainPatchVendor Advisory
- http://www.securityfocus.com/bid/73394
FAQ
What is CVE-2015-2786?
CVE-2015-2786 is a vulnerability with a CVSS score of 10.0 (HIGH). Unspecified vulnerability in MyBB (aka MyBulletinBoard) before 1.8.4 has unknown attack vectors related to "Group join request notifications sent to wrong group leaders."
How severe is CVE-2015-2786?
CVE-2015-2786 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-2786?
Check the references section above for vendor advisories and patch information. Affected products include: Mybb Mybb.