PT-2024-22278 · Unknown · 0Ch Bbs Script

Published

2024-03-26

·

Updated

2024-11-05

·

CVE-2024-28126

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions 0ch BBS Script version 4.00
Description A cross-site scripting vulnerability exists in the product, allowing an arbitrary script to be executed on the web browser of the user accessing the website that uses the product. The developer was unreachable, and users should consider stopping the use of 0ch BBS Script ver.4.00.
Recommendations For 0ch BBS Script version 4.00, consider stopping the use of this version as the developer is unreachable, and no fix is available. As a temporary workaround, consider implementing additional security measures to restrict the execution of arbitrary scripts on the web browser.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-28126

Affected Products

0Ch Bbs Script