MyBB CVE-2018-10678 Open Redirection Vulnerability
BID:104187
CVE-2018-10678 |Info
MyBB CVE-2018-10678 Open Redirection Vulnerability
| Bugtraq ID: | 104187 |
| Class: | Input Validation Error |
| CVE: |
CVE-2018-10678 |
| Remote: | Yes |
| Local: | No |
| Published: | May 13 2018 12:00AM |
| Updated: | May 13 2018 12:00AM |
| Credit: | Mayur Udiniya |
| Vulnerable: |
MyBB MyBB 1.8.15 |
| Not Vulnerable: | |
Discussion
MyBB CVE-2018-10678 Open Redirection Vulnerability
MyBB is prone to an open-redirection vulnerability because it fails to properly sanitize user-supplied input.
An attacker can leverage this issue to conduct phishing attacks; other attacks are possible.
MyBB is prone to an open-redirection vulnerability because it fails to properly sanitize user-supplied input.
An attacker can leverage this issue to conduct phishing attacks; other attacks are possible.
Exploit / POC
MyBB CVE-2018-10678 Open Redirection Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
MyBB CVE-2018-10678 Open Redirection Vulnerability
References:
References:
- MyBB Homepage (MyBB)
- Phishing attack in chat ( MayurUdiniya)