Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in editpost.php in MyBulletinBoard (MyBB) before 1.1.5 allows remote attackers to perform unauthorized actions as a logged in user and delete arbitrary forum posts via a bbcode IMG tag with a modified delete parameter in a deletepost action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MyBulletinBoard 'editpost.php '跨站请求伪造(CSRF) 漏洞
Vulnerability Description
MyBulletinBoard (MyBB) 1.1.5之前版本中的 editpost.php 存在跨站请求伪造(CSRF) 漏洞。远程攻击者可以借助deletepost 操作中带有经过修改的 delete 参数的bbcode IMG 标签,以登录用户的身份执行未授权的操作并删除任意论坛帖子。
CVSS Information
N/A
Vulnerability Type
N/A