Description
MyBB (aka MyBulletinBoard) before 1.8.8 on Windows and MyBB Merge System before 1.8.8 on Windows allow remote attackers to overwrite arbitrary CSS files via vectors related to "style import."
Remediation
References
Related Vulnerabilities
WordPress Plugin Accept Donations with PayPal Cross-Site Request Forgery (1.3.3)
concrete5 Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-22958)
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-5539)
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.22)
WordPress Plugin Woocommerce CSV importer Arbitrary File Deletion (3.3.6)