MyBB Advanced Forum Signatures 'afs_bar_right' Parameter SQL Injection Vulnerability
29 Oct. 2011
Summary
MyBB Advanced Forum Signatures is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input before using it in an SQL query.
Vulnerable Systems:
* MyBB Advanced Forum Signatures 2.0.4
A successful exploit may allow an attacker to compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.
MyBB Advanced Forum Signatures 2.0.4 is vulnerable; other versions may also be affected.
Vendor Status:
MyBB as issued an update for this vulnerablity