PT-2004-1493 · Phpbb · Phpbb

Apple_Soup

+1

·

Published

2004-03-18

·

Updated

2017-07-11

·

CVE-2004-0339

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions phpBB versions prior to 2.0.6c
Description The issue is related to a cross-site scripting (XSS) vulnerability. This vulnerability allows remote attackers to execute arbitrary script or HTML as other users. The exploitation is possible via the postorder parameter in the ViewTopic.php file.
Recommendations For versions prior to 2.0.6c, update to a version that contains a fix for this issue to prevent exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0339

Affected Products

Phpbb