Required CVE Record Information
Description
In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- http://seclists.org/fulldisclosure/2017/Apr/55 x_transferred
- securityfocus.com: 98045 vdb-entryx_transferred
- https://blog.mybb.com/2017/04/04/mybb-1-8-11-merge-system-1-8-11-release/ x_transferred