CVE-2015-2333: XSS
Published Mar 18, 2015
·Updated
Cross-site scripting (XSS) vulnerability in the MyCode editor in MyBB (aka MyBulletinBoard) before 1.8.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
1 affected component
Mybb Mybb<=1.8.3
Remediation
Event History
Mar 18, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2333?
CVE-2015-2333 is classified as a medium severity vulnerability due to the potential for cross-site scripting attacks.
2
How do I fix CVE-2015-2333?
To fix CVE-2015-2333, update MyBB to version 1.8.4 or later.
3
What type of vulnerability is CVE-2015-2333?
CVE-2015-2333 is a cross-site scripting (XSS) vulnerability.
4
Who is affected by CVE-2015-2333?
Users of MyBB versions prior to 1.8.4 are affected by CVE-2015-2333.
5
What can attackers do with CVE-2015-2333?
Attackers can inject arbitrary web scripts or HTML into the MyCode editor due to CVE-2015-2333.