CVE-2010-4624: Low severity Mybb Mybb vulnerability
Published Dec 30, 2010
·Updated
MyBB (aka MyBulletinBoard) before 1.4.12 allows remote authenticated users to bypass intended restrictions on the number of [img] MyCodes by editing a post after it has been created.
Affected Software
37 affected components
Mybb Mybb<=1.4.11
Mybb Mybb=1.00
Mybb Mybb=1.01
Mybb Mybb=1.1.0
Mybb Mybb=1.1.1
Mybb Mybb=1.1.2
Mybb Mybb=1.1.3
Mybb Mybb=1.1.4
Mybb Mybb=1.1.5
Mybb Mybb=1.1.6
Mybb Mybb=1.1.7
Mybb Mybb=1.1.8
Mybb Mybb=1.02
Mybb Mybb=1.2
Mybb Mybb=1.2.0
Mybb Mybb=1.2.1
Mybb Mybb=1.2.2
Mybb Mybb=1.2.3
Mybb Mybb=1.2.4
Mybb Mybb=1.2.5
Mybb Mybb=1.2.6
Mybb Mybb=1.2.7
Mybb Mybb=1.2.8
Mybb Mybb=1.2.9
Mybb Mybb=1.2.10
Mybb Mybb=1.2.11
Mybb Mybb=1.2.12
Mybb Mybb=1.2.13
Mybb Mybb=1.03
Mybb Mybb=1.04
Mybb Mybb=1.4.0
Mybb Mybb=1.4.2
Mybb Mybb=1.4.3
Mybb Mybb=1.4.6
Mybb Mybb=1.4.8
Mybb Mybb=1.4.9
Mybb Mybb=1.4.10
Remediation
Event History
Dec 30, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4624?
The severity of CVE-2010-4624 is classified as medium, as it allows authenticated users to bypass restrictions on MyCodes.
2
How do I fix CVE-2010-4624?
To fix CVE-2010-4624, upgrade MyBB to version 1.4.12 or later.
3
Who is affected by CVE-2010-4624?
CVE-2010-4624 affects users of MyBB versions before 1.4.12, including multiple earlier versions.
4
What types of vulnerabilities does CVE-2010-4624 involve?
CVE-2010-4624 involves a vulnerability that allows credentialed users to bypass intended restrictions.
5
Can CVE-2010-4624 be exploited by unauthenticated users?
No, CVE-2010-4624 requires remote authenticated users to exploit the vulnerability.