Clickjacking Vulnerability in MyBB Admin Control Panel
CVE-2016-9413

6.5MEDIUM

Key Information:

Vendor

Mybb

Vendor
CVE Published:
31 January 2017

What is CVE-2016-9413?

The Admin control panel in MyBB, prior to version 1.8.7, is susceptible to clickjacking attacks, which can allow remote attackers to deceive users into clicking on malicious elements that overlap genuine content. This vulnerability can be exploited through various unspecified vectors, potentially compromising user interactions within the control panel.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.