CVE-2021-27947: SQL Injection
Published Mar 15, 2021
·Updated
SQL Injection vulnerability in MyBB before 1.8.26 via the Copy Forum feature in Forum Management. (issue 2 of 3).
Affected Software
1 affected component
Mybb Mybb<1.8.26
Remediation
Event History
Mar 15, 2021
CVE Published
via MITRE·05:10 PM
Data Sourced
via MITRE·05:10 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this SQL Injection vulnerability?
The vulnerability ID for this SQL Injection vulnerability is CVE-2021-27947.
2
What software version is affected by this vulnerability?
MyBB versions up to and excluding 1.8.26 are affected by this vulnerability.
3
How severe is the vulnerability CVE-2021-27947?
The severity of the vulnerability CVE-2021-27947 is high, with a CVSS score of 7.2.
4
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-89.
5
How can I fix the SQL Injection vulnerability CVE-2021-27947 in MyBB?
To fix the SQL Injection vulnerability CVE-2021-27947 in MyBB, update to version 1.8.26 or later.