Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-1193

Опубликовано: 16 мая 2005
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 7.5

Описание

The bbencode_second_pass and make_clickable functions in bbcode.php for phpBB before 2.0.15, as used in viewtopic.php, privmsg.php, and other scripts, allow remote attackers to execute arbitrary script via a BBcode tag with a (1) javascript:, (2) applet:, (3) about:, (4) activex:, (5) chrome:, or (6) script: URI scheme, as demonstrated using the URL tag.

РелизСтатусПримечание
dapper

released

2.0.18-2
devel

released

2.0.18-2
edgy

released

2.0.18-2
feisty

released

2.0.18-2
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 96%
0.27107
Средний

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 20 лет назад

The bbencode_second_pass and make_clickable functions in bbcode.php for phpBB before 2.0.15, as used in viewtopic.php, privmsg.php, and other scripts, allow remote attackers to execute arbitrary script via a BBcode tag with a (1) javascript:, (2) applet:, (3) about:, (4) activex:, (5) chrome:, or (6) script: URI scheme, as demonstrated using the URL tag.

debian
больше 20 лет назад

The bbencode_second_pass and make_clickable functions in bbcode.php fo ...

github
больше 3 лет назад

The bbencode_second_pass and make_clickable functions in bbcode.php for phpBB before 2.0.15, as used in viewtopic.php, privmsg.php, and other scripts, allow remote attackers to execute arbitrary script via a BBcode tag with a (1) javascript:, (2) applet:, (3) about:, (4) activex:, (5) chrome:, or (6) script: URI scheme, as demonstrated using the URL tag.

EPSS

Процентиль: 96%
0.27107
Средний

7.5 High

CVSS2