Posted by MustLive on Apr 02
Hello list!
I want to warn you about Abuse of Functionality, Insufficient
Anti-automation, XML Injection and Cross-Site Scripting vulnerabilities in
MyBB.
————————-
Affected products:
————————-
Vulnerable are MyBB 1.6.1 and previous versions.
In versions MyBB 1.6.2 and 1.4.15 XML Injection and XSS holes were fixed
(http://blog.mybb.com/2011/02/22/mybb-1-6-2-and-1-4-15-security-update/).
Also developers have…
Source: AoF, IAA, XML Injection and XSS vulnerabilities in MyBB




