Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CRLF injection vulnerability in inc/function.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to conduct cross-site scripting (XSS), poison caches, or hijack pages via CRLF (%0A%0D) sequences in the Referrer HTTP header field, possibly when redirecting to other web pages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MyBB 'function.php'CRLF注入漏洞
Vulnerability Description
在MyBulletinBoard (MyBB) 1.04的inc/function.php中存在CRLF注入漏洞,远程攻击者可通过以下途径实施跨站脚本攻击(XSS),有毒缓存,或劫持网页:可能正重定向到其它web网页时,在Referrer HTTP头字段中的CRLF (%0A%0D)序列。
CVSS Information
N/A
Vulnerability Type
N/A