Zurück zur CVE-Übersicht
CVE-2017-8104
MEDIUM(5.0)AV:N/AC:L/Au:N/C:P/I:N/A:N
Risk Signal Score13/100 — NIEDRIG
- CVSS 5 — Mittel
EPSS-Score
3%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
5
Technische Schwere
Beschreibung
In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter.
Referenzen
- http://seclists.org/fulldisclosure/2017/Apr/55
- http://www.securityfocus.com/bid/98045
- https://blog.mybb.com/2017/04/04/mybb-1-8-11-merge-system-1-8-11-release/
- http://seclists.org/fulldisclosure/2017/Apr/55
- http://www.securityfocus.com/bid/98045
- https://blog.mybb.com/2017/04/04/mybb-1-8-11-merge-system-1-8-11-release/