oss-sec mailing list archives
Re: CVE-request: MyBB 1.6 <= SQL Injection
From: Henri Salo <henri () nerv fi>
Date: Sun, 25 Mar 2012 16:37:06 +0300
On Fri, Mar 23, 2012 at 09:10:07AM -0600, Kurt Seifried wrote:
On 03/23/2012 02:38 AM, Henri Salo wrote:There was a request with same subject in here: http://seclists.org/oss-sec/2011/q1/545 (2011) I don't think this one got assigned and I couldn't find the CVE-identifier so I am requsting it again. - Henri SaloIs there a link on the MyBB site describing this issue/update? -- Kurt Seifried Red Hat Security Response Team (SRT)
It seems that this advisory http://seclists.org/oss-sec/2011/q1/545 is false-positive. Please see: http://dev.mybb.com/issues/1330 #mybb in Freenode were helpful :) Could YEHG verify this? - Henri Salo
Current thread:
- CVE-request: MyBB 1.6 <= SQL Injection Henri Salo (Mar 23)
- Re: CVE-request: MyBB 1.6 <= SQL Injection Kurt Seifried (Mar 23)
- Re: CVE-request: MyBB 1.6 <= SQL Injection Henri Salo (Mar 25)
- Re: CVE-request: MyBB 1.6 <= SQL Injection Kurt Seifried (Mar 23)