99 lines
2.8 KiB
JSON
Raw Normal View History

{
"id": "CVE-2023-41362",
"sourceIdentifier": "cve@mitre.org",
"published": "2023-08-29T16:15:09.237",
"lastModified": "2023-09-11T15:16:03.410",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "MyBB before 1.8.36 allows Code Injection by users with certain high privileges. Templates in Admin CP intentionally use eval, and there was some validation of the input to eval, but type juggling interfered with this when using PCRE within PHP."
},
{
"lang": "es",
"value": "MyBB anterior a 1.8.36 permite la inyecci\u00f3n de c\u00f3digo por parte de usuarios con ciertos privilegios elevados. Las plantillas en Admin CP usan intencionalmente eval, y hubo cierta validaci\u00f3n de la entrada para eval, pero el malabarismo de tipos interfiri\u00f3 con esto cuando se usaba PCRE dentro de PHP.\n"
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "HIGH",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.2,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.2,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-94"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mybb:mybb:*:*:*:*:*:*:*:*",
"versionEndExcluding": "1.8.36",
"matchCriteriaId": "BB1F809C-701C-452A-9E80-B91FF79CF7AC"
}
]
}
]
}
],
"references": [
{
"url": "https://blog.sorcery.ie/posts/mybb_acp_rce/",
"source": "cve@mitre.org"
},
{
"url": "https://github.com/mybb/mybb/commit/a43a6f22944e769a6eabc58c39e7bc18c1cab4ca.patch",
"source": "cve@mitre.org",
"tags": [
"Patch"
]
},
{
"url": "https://github.com/mybb/mybb/security/advisories/GHSA-pr74-wvp3-q6f5",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Third Party Advisory"
]
},
{
"url": "https://mybb.com/versions/1.8.36/",
"source": "cve@mitre.org",
"tags": [
"Release Notes"
]
}
]
}