Critical RCE Flaw Reported in MyBB Forum Software—Patch Your Sites

Read the original article: Critical RCE Flaw Reported in MyBB Forum Software—Patch Your Sites


A pair of critical vulnerabilities in a popular bulletin board software called MyBB could have been chained together to achieve remote code execution (RCE) without the need for prior access to a privileged account.
The flaws, which were discovered by independent security researchers Simon Scannell and Carl Smith, were reported to the MyBB Team on February 22, following which it released an


Read the original article: Critical RCE Flaw Reported in MyBB Forum Software—Patch Your Sites