PT-2004-1493 · Phpbb · Phpbb

Apple_Soup

+1

·

Publicado

2004-03-18

·

Atualizado

2017-07-11

·

CVE-2004-0339

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions phpBB versions prior to 2.0.6c
Description The issue is related to a cross-site scripting (XSS) vulnerability. This vulnerability allows remote attackers to execute arbitrary script or HTML as other users. The exploitation is possible via the postorder parameter in the ViewTopic.php file.
Recommendations For versions prior to 2.0.6c, update to a version that contains a fix for this issue to prevent exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-0339

Produtos afetados

Phpbb