Server-side Request Forgery (SSRF) Vulnerability in MyBB and MyBB Merge System before 1.8.8
CVE-2016-9417 · MEDIUM Severity
AV:N/AC:M/AU:N/C:P/I:P/A:N
The fetch_remote_file function in MyBB (aka MyBulletinBoard) before 1.8.8 and MyBB Merge System before 1.8.8 allows remote attackers to conduct server-side request forgery (SSRF) attacks via unspecified vectors.
Learn more about our Cis Benchmark Audit For Server Software.