Description
MyBB 1.8.31 has a SQL injection vulnerability in the Admin CP's Users module allows remote authenticated users to modify the query string via direct user input or stored search filter settings.
Remediation
References
Related Vulnerabilities
WordPress 2.0.5 Invalid CSRF Token Cross-Site Scripting Vulnerability (0.6.2 - 2.0.5)
WordPress Plugin NextGEN Gallery-WordPress Gallery Local File Inclusion (2.1.56)
WordPress Plugin Captcha by BestWebSoft Multiple Cross-Site Scripting Vulnerabilities (4.1.5)
PleskLin Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-0132)