Описание
Cross-site scripting (CSS) vulnerability in IcrediBB 1.1 Beta allows remote attackers to execute arbitrary script and steal cookies as other IcrediBB users via the (1) title or (2) body of posts.
Ссылки
- ExploitPatchVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
- ExploitPatchVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:icredibb:icredibb:1.1_beta:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.03062
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Cross-site scripting (CSS) vulnerability in IcrediBB 1.1 Beta allows remote attackers to execute arbitrary script and steal cookies as other IcrediBB users via the (1) title or (2) body of posts.
EPSS
Процентиль: 86%
0.03062
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other