MyAwards MyBB Module Cross Site Request Forgery Vulnerability
BID:69386
Info
MyAwards MyBB Module Cross Site Request Forgery Vulnerability
| Bugtraq ID: | 69386 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 22 2014 12:00AM |
| Updated: | Aug 22 2014 12:00AM |
| Credit: | Vagineer |
| Vulnerable: |
MyBB MyAwards 2.3 MyBB MyAwards 2.2 MyBB MyAwards 2.1 MyBB MyAwards 2.0 |
| Not Vulnerable: |
MyBB MyAwards 2.4 |
Discussion
MyAwards MyBB Module Cross Site Request Forgery Vulnerability
MyAwards module for MyBB is prone to a cross-site request-forgery vulnerability.
An attacker may exploit this issue to perform certain unauthorized actions. This may lead to further attacks.
Versions prior to MyAwards 2.4 are vulnerable.
MyAwards module for MyBB is prone to a cross-site request-forgery vulnerability.
An attacker may exploit this issue to perform certain unauthorized actions. This may lead to further attacks.
Versions prior to MyAwards 2.4 are vulnerable.
Solution / Fix
MyAwards MyBB Module Cross Site Request Forgery Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.