VYPR
Critical severity9.8NVD Advisory· Published Jan 31, 2017· Updated May 13, 2026

CVE-2016-9402

CVE-2016-9402

Description

SQL injection vulnerability in the moderation tool in MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 might allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

Affected products

2
  • cpe:2.3:a:mybb:merge_system:*:*:*:*:*:*:*:*
    Range: <=1.8.6
  • cpe:2.3:a:mybb:mybb:*:*:*:*:*:*:*:*
    Range: <=1.8.6

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.