Un XSS vulnerabilità in index.php in MyBB 1.8.x riflessa attraverso 1.8.19 consente agli aggressori remoti di inserire JavaScript tramite il ‘ricalcatura [bburl]’ parametro. |
https://blog.mybb.com/ https://mybb.com/versions/1.8.20/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19202 |
Vulnerabilità: CVE-2018-19202
