Description
Cross-site scripting (XSS) vulnerability in the Mod control panel in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to inject arbitrary web script or HTML via vectors involving editing users.
Remediation
References
Related Vulnerabilities
WordPress Plugin Kimili Flash Embed Unspecified Vulnerability (2.2.1)
Oracle JRE CVE-2013-2427 Vulnerability (CVE-2013-2427)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-4403)
WordPress Plugin Fancy Product Designer-WooCommerce Cross-Site Scripting (3.4.1)
WordPress Plugin Aspose Cloud eBook Generator Arbitrary File Download (1.0)