Reflected XSS Vulnerability in MyBB 1.8.x through 1.8.19 via 'upsetting[bburl]' Parameter

Reflected XSS Vulnerability in MyBB 1.8.x through 1.8.19 via 'upsetting[bburl]' Parameter

CVE-2018-19202 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

A reflected XSS vulnerability in index.php in MyBB 1.8.x through 1.8.19 allows remote attackers to inject JavaScript via the 'upsetting[bburl]' parameter.

Learn more about our Web Application Penetration Testing UK.