CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
CVE-2022-24676 HIGH
update_code in Admin.php in HYBBS2 through 2.3.2 allows arbitrary file upload via a crafted ZIP archive.
CVSS 8.8 EPSS 1.49% Feb 8, 2022
CVE-2022-24677 CRITICAL
Admin.php in HYBBS2 through 2.3.2 allows remote code execution because it writes plugin-related configuration information to conf.php.
CVSS 9.8 EPSS 2.49% Feb 8, 2022
CVE-2019-10644 HIGH
An issue was discovered in HYBBS 2.2. /?admin/user.html has a CSRF vulnerability that can add an administrator account.
CVSS 8.8 EPSS 0.66% Mar 30, 2019
CVE-2018-14499 MEDIUM
An issue was found in HYBBS through 2016-03-08. There is an XSS vulnerablity via an article title to post.html.
CVSS 6.1 EPSS 0.79% Mar 7, 2019
Showing 1 to 4 CVEs · page 1