CVE-2016-9420

MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allow remote attackers to have unspecified impact via vectors related to "loose comparison false positives."
References
Link Resource
https://blog.mybb.com/2016/10/17/mybb-1-8-8-merge-system-1-8-8-release/ Release Notes Patch Vendor Advisory
http://www.openwall.com/lists/oss-security/2016/11/18/1 Mailing List Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2016/11/10/8 Mailing List Patch Third Party Advisory
http://www.securityfocus.com/bid/94396 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mybb:mybb:*:*:*:*:*:*:*:*
cpe:2.3:a:mybb:merge_system:*:*:*:*:*:*:*:*

Information

Published : 2017-01-31 22:59

Updated : 2017-02-05 21:12


NVD link : CVE-2016-9420

Mitre link : CVE-2016-9420


JSON object : View

Products Affected

mybb

  • merge_system
  • mybb
CWE
CWE-20

Improper Input Validation