exploits , vulnerabilities , articles , UBBCentral UBB.Threads Multiple Cross-Site Scripting Vulnerabilities
| Title |
UBBCentral UBB.Threads Multiple Cross-Site Scripting Vulnerabilities |
| Published |
2005-06-24-12:00AM |
| Updated |
2005-06-24-04:46PM |
| Class |
Input Validation Error |
| CVE |
CVE-MAP-NOMATCH |
| Remote |
Yes |
| Local |
No |
| Credit |
James Bercegay of the GulfTech Security Research Team is credited with the discovery of this vulnerability. |
| Vulnerable |
UBBCentral UBB.threads 6.5.1 .1
UBBCentral UBB.threads 6.5.1
UBBCentral UBB.threads 6.5
UBBCentral UBB.threads 6.2.3
UBBCentral UBB.threads 6.0 |
| Not Vulnerable |
UBBCentral UBB.threads 6.5.2 Beta2 |
| Code |
No exploit is required.
The following proof of concept URI are available: http://www.example.com/ubbt/dosearch.php?Cat=0&Searchpage=2[XSS]&topic= http://www.example.com/ubbt/newreply.php?Cat=0&Board=UBB8&Number=39818[XSS]&page=0&what=showflat&fpart=1&vc=1 http://www.example.com/ubbt/newreply.php?Cat=0&Board=UBB8&Number=39818&page=0&what=showflat[XSS]&fpart=1&vc=1 http://www.example.com/ubbt/newreply.php?Cat=0&Board=UBB8&Number=39818&page=0[XSS]&what=showflat&fpart=1&vc=1 http://www.example.com/ubbt/showprofile.php?Cat=0&User=7&Number=39818[XSS]&Board=UBB8&what=showflat&page=0&fpart=1&vc=1 http://www.example.com/ubbt/showprofile.php?Cat=0&User=7&Number=39818&Board=UBB8[XSS]&what=showflat&page=0&fpart=1&vc=1 http://www.example.com/ubbt/showprofile.php?Cat=0&User=7&Number=39818&Board=UBB8&what=showflat[XSS]&page=0&fpart=1&vc=1 http://www.example.com/ubbt/showflat.php?Cat=0&Board=UBB5&Number=42173&page=0&fpart=all[XSS] http://www.example.com/ubbt/showflat.php?Cat=0&Board=UBB5&Number=42173&page=0[XSS]&fpart=all http://www.example.com/ubbt/showmembers.php?Cat=&like=p[XSS]&sb=1&page=1
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Mon, 14 Dec 2009 22:41:54 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Joomla! is ccpktv.cn/ 200+%252Fc Google ima news for c 200 /compo www.haibao /plugins/s felicity f wap sex fr /search/ex hotmail ex module felicity f zeroboard felicity f php vusion Sextoon Photo sexi zeroboard felicity f mambo Remo 777 www.slin8. zeroboard ...t Windo www. kari sweet cartoonxxx Zeroboard Koriyan se www.lagala Www.23sex. Asianude Zeroboard Zeroboard Zeroboard Www.teenba I am seein www.funfor windows xp video pon PHP Advanc cartoonxxx Asianude PHP-Nuke+8 trishabf mambo Remo THIRSA.SEX Arabic sex
|