Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Screamdz

#40185of 53,624
6.8Total CVSS
Vulnerabilities · 1
PT-2006-6960
6.8
2006-12-07
Mowdbb · Mowdbb · CVE-2006-6348
**Name of the Vulnerable Software and Affected Versions** mowdBB version RC-6 **Description** A cross-site scripting (XSS) issue exists, allowing remote attackers to inject arbitrary web script or HTML via the `forum name` parameter in the "board.php" file. **Recommendations** For mowdBB version RC-6, consider restricting access to the `board.php` file until a patch is available, and avoid using the `forum name` parameter in this context to minimize the risk of exploitation.