|
MyBB contains a flaw that may allow a remote denial of service. The issue is triggered when the member.php script makes a superfluous call to the SQL COUNT function, allowing a remote attacker to make requests to member.php which scan the entire users table, causing a denial of service via resource consumption.
|