CVE-2021-47905: MyBB Delete Account Plugin 1.4 - Cross-Site Scripting
MyBB Delete Account Plugin 1.4 contains a cross-site scripting vulnerability in the account deletion reason input field. Attackers can inject malicious scripts that will execute in the admin interface when viewing delete account reasons.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-47905?
CVE-2021-47905 is categorized as a moderate severity cross-site scripting vulnerability.
How do I fix CVE-2021-47905?
To fix CVE-2021-47905, you should update the MyBB Delete Account Plugin to its latest version where the vulnerability is patched.
What type of vulnerability is CVE-2021-47905?
CVE-2021-47905 is a cross-site scripting (XSS) vulnerability found in the MyBB Delete Account Plugin.
Who is affected by CVE-2021-47905?
Any MyBB installation using the Delete Account Plugin version 1.4 is potentially affected by CVE-2021-47905.
What can attackers do with CVE-2021-47905?
Attackers exploiting CVE-2021-47905 can inject malicious scripts into the admin interface, compromising the security of the application.