Description
In MyBB before 1.8.21, an attacker can abuse a default behavior of MySQL on many systems (that leads to truncation of strings that are too long for a database column) to create a PHP shell in the cache directory of a targeted forum via a crafted XML import, as demonstrated by truncation of aaaaaaaaaaaaaaaaaaaaaaaaaa.php.css to aaaaaaaaaaaaaaaaaaaaaaaaaa.php with a 30-character limit, aka theme import stylesheet name RCE.
Remediation
References
Related Vulnerabilities
WordPress Plugin Form Builder CP Cross-Site Scripting (1.2.31)
SharePoint Deserialization of Untrusted Data Vulnerability (CVE-2024-38023)
WordPress Plugin WP Maps-Display Google Maps Perfectly with Ease SQL Injection (4.6.1)
WordPress Plugin Yahoo! Updates for WordPress Multiple Cross-Site Scripting Vulnerabilities (1.0)