CVE-2014-9240 | MyBB up to 1.8.0 member.php question_id sql injection (ID 129109 / EDB-35224)
A vulnerability has been found in MyBB up to 1.8.0 and classified as critical. This vulnerability affects unknown code of the file member.php. The manipulation of the argument question_id leads to sql injection.
This vulnerability was named CVE-2014-9240. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.