Описание
Cross-site scripting (XSS) vulnerability in pmlite.php in XOOPS 2.3.1 and 2.3.2a allows remote attackers to inject arbitrary web script or HTML via a STYLE attribute in a URL BBcode tag in a private message.
Cross-site scripting (XSS) vulnerability in pmlite.php in XOOPS 2.3.1 and 2.3.2a allows remote attackers to inject arbitrary web script or HTML via a STYLE attribute in a URL BBcode tag in a private message.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2008-6885
- http://marc.info/?l=bugtraq&m=122875449930810&w=2
- http://secunia.com/advisories/33048
- http://www.osvdb.org/50574
- http://www.securityfocus.com/bid/32685
- http://www.xoops.org/modules/news/article.php?storyid=4540
- http://www.xoops.org/modules/news/article.php?storyid=4563
Связанные уязвимости
nvd
больше 16 лет назад
Cross-site scripting (XSS) vulnerability in pmlite.php in XOOPS 2.3.1 and 2.3.2a allows remote attackers to inject arbitrary web script or HTML via a STYLE attribute in a URL BBcode tag in a private message.