SQL Injection Vulnerability in MyBB Forum Software by MyBB Group
CVE-2022-43709
4.9MEDIUM
What is CVE-2022-43709?
MyBB 1.8.31 contains a SQL injection vulnerability in the Admin Control Panel's Users module. This flaw allows remote authenticated users to manipulate the query string through direct input or modifications via stored search filter settings, potentially compromising user data and system integrity. Proper validation and sanitization of user inputs are critical to mitigate such vulnerabilities.