MyBB Improper Access Control Vulnerability - CVE-2015-8973 - Vulnerability Database

MyBB Improper Access Control Vulnerability - CVE-2015-8973

High
Reference: CVE-2015-8973
Title: MyBB Improper Access Control Vulnerability
Overview:

xmlhttp.php in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allows remote attackers to bypass intended access restrictions via vectors related to the forum password.