CVE-2017-8104: Path Traversal
Published Apr 24, 2017
·Updated
In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter.
Affected Software
1 affected component
Mybb Mybb<=1.8.10
Remediation
Event History
Apr 24, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-8104?
CVE-2017-8104 has been rated as a medium severity vulnerability due to its potential for exposing sensitive information through directory traversal.
2
How do I fix CVE-2017-8104?
To fix CVE-2017-8104, upgrade MyBB to version 1.8.11 or later, which addresses this vulnerability.
3
What does CVE-2017-8104 exploit?
CVE-2017-8104 exploits the smilie module in MyBB by allowing directory traversal through the pathfolder parameter.
4
What versions of MyBB are affected by CVE-2017-8104?
MyBB versions prior to 1.8.11, specifically 1.8.10 and earlier, are affected by CVE-2017-8104.
5
Is CVE-2017-8104 critical for my site security?
Yes, CVE-2017-8104 poses a risk to site security as it can be used to gain unauthorized access to files on the server.