CVE-2015-2332: XSS
Published Mar 18, 2015
·Updated
Cross-site scripting (XSS) vulnerability in member.php in MyBB (aka MyBulletinBoard) before 1.8.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
1 affected component
Mybb Mybb<=1.8.3
Remediation
Event History
Mar 18, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2332?
CVE-2015-2332 has a moderate severity rating due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2015-2332?
To fix CVE-2015-2332, upgrade MyBB to version 1.8.4 or later.
3
Who is affected by CVE-2015-2332?
CVE-2015-2332 affects users of MyBB versions prior to 1.8.4.
4
What type of vulnerability is CVE-2015-2332?
CVE-2015-2332 is a cross-site scripting (XSS) vulnerability.
5
Can CVE-2015-2332 be exploited remotely?
Yes, CVE-2015-2332 can be exploited by remote attackers to inject arbitrary web scripts.