CVE-2005-3776: XSS
Multiple cross-site scripting (XSS) vulnerabilities in MyBulletinBoard (MyBB) 1.0 PR2 Rev 686 allow remote attackers to inject arbitrary web script or HTML via (1) the subject field when creating a new thread and (2) information passed to the Reputation system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3776?
CVE-2005-3776 has a medium severity level, as it allows attackers to exploit cross-site scripting vulnerabilities.
How do I fix CVE-2005-3776?
To fix CVE-2005-3776, upgrade MyBulletinBoard to a version that addresses these vulnerabilities.
What are the vectors for attack in CVE-2005-3776?
Attackers can exploit CVE-2005-3776 through the subject field when creating a new thread and via the Reputation system.
Who is affected by CVE-2005-3776?
CVE-2005-3776 affects users of MyBulletinBoard version preview release 2 rev 686.
What can attackers achieve with CVE-2005-3776?
Attackers can execute arbitrary web scripts or HTML via the injection points in CVE-2005-3776.