Description
Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving editing users.
Remediation
References
Related Vulnerabilities
MySQL CVE-2015-0505 Vulnerability (CVE-2015-0505)
OpenVPN AS Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-9104)
WordPress Plugin PictPress 'resize.php' Multiple Local File Include Vulnerabilities (1.0)
Rukovoditel Improper Input Validation Vulnerability (CVE-2020-11819)
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-2064)