Security Advisory

CVE-2015-8973

8.3
HIGH

Vulnerability Description

xmlhttp.php in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allows remote attackers to bypass intended access restrictions via vectors related to the forum password.
Published Date January 31, 2017
Official Source NIST NVD Advisory