CVE-2016-9420: Input Validation
Published Jan 31, 2017
·Updated
MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allow remote attackers to have unspecified impact via vectors related to "loose comparison false positives."
Affected Software
2 affected components
MyBB Merge System<=1.8.7
MyBB MyBB<=1.8.7
Remediation
Patch Available
Patch Available
Event History
Jan 31, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9420?
CVE-2016-9420 is considered a moderate severity vulnerability.
2
How do I fix CVE-2016-9420?
To fix CVE-2016-9420, upgrade MyBB and MyBB Merge System to version 1.8.8 or later.
3
Who is affected by CVE-2016-9420?
CVE-2016-9420 affects users of MyBB versions prior to 1.8.8 and MyBB Merge System versions prior to 1.8.8.
4
What impact does CVE-2016-9420 have?
CVE-2016-9420 may allow remote attackers to exploit loose comparison false positives.
5
Is there a public exploit for CVE-2016-9420?
As of now, there is no known public exploit specifically for CVE-2016-9420.