MyBB (aka MyBulletinBoard) 1.4.2 uses insufficient randomness to compose filenames of uploaded files used as attachments, which makes it easier for remote attackers to read these files by guessing filenames.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2008-11-04T20:00:00
Updated: 2024-08-07T10:31:28.329Z
Reserved: 2008-11-04T00:00:00
Link: CVE-2008-4929
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-11-04T21:00:05.957
Modified: 2024-11-21T00:52:52.030
Link: CVE-2008-4929
Redhat
No data.