Description
In MyBB before 1.8.11, the Email MyCode component allows XSS, as demonstrated by an onmouseover event.
Remediation
References
Related Vulnerabilities
Oracle Application Server Incorrect Calculation of Buffer Size Vulnerability (CVE-2004-1363)
WordPress Plugin WebARX Cross-Site Scripting (1.3.0)
Python Integer Overflow or Wraparound Vulnerability (CVE-2008-4864)
Claroline Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4844)