There is a security bug in MyBB 1.1.3 software (latest version fully
patched) file usercp.php that allows attacker performe a SQLINJECTION
attack.
READ ORIGINAL ADVISORY FOR MORE DETAILS.
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.