Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3v2h-3966-qxpq

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field.

Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field.

EPSS

Процентиль: 78%
0.0117
Низкий

Связанные уязвимости

nvd
почти 24 года назад

Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field.

EPSS

Процентиль: 78%
0.0117
Низкий