Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-2352

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2015-2352
Last Modified 28 Sep 2015 08:41:42
Published 19 Mar 2015 10:59:04
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2015-2352

Summary

The cache handler in MyBB (aka MyBulletinBoard) before 1.8.4 does not properly check the encoding of input to the var_export function, which allows attackers to have an unspecified impact via unknown vectors.

Vulnerable Systems

Application

  • Mybb 1.8.3


References

CONFIRM - http://blog.mybb.com/2015/02/15/mybb-1-8-4-released-feature-update-security-maintenance-release/

SECTRACK - 1031953


Last Updated: 27 May 2016 11:08:12