CVE-2015-2334: CSRF
Published Mar 18, 2015
·Updated
Cross-site request forgery (CSRF) vulnerability in the Admin Control Panel (ACP) login in MyBB (aka MyBulletinBoard) before 1.8.4 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Affected Software
1 affected component
Mybb Mybb<=1.8.3
Remediation
Event History
Mar 18, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2334?
CVE-2015-2334 is considered a medium severity vulnerability due to the potential for CSRF attacks.
2
How do I fix CVE-2015-2334?
To fix CVE-2015-2334, upgrade to MyBB version 1.8.4 or later.
3
What software is affected by CVE-2015-2334?
CVE-2015-2334 affects MyBB versions prior to 1.8.4.
4
What type of vulnerability is CVE-2015-2334?
CVE-2015-2334 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who can exploit CVE-2015-2334?
Remote attackers can exploit CVE-2015-2334 to hijack the authentication of victims.