CVE-2008-0382

Publication date

2008-01-22 19:00:00

Family

mitre

State

PUBLISHED

Description

Multiple eval injection vulnerabilities in MyBB 1.2.10 and earlier allow remote attackers to execute arbitrary code via the sortby parameter to (1) forumdisplay.php or (2) a results action in search.php.