Vulnerabilities > CVE-2002-0117 - Unspecified vulnerability in Yabb

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
yabb
exploit available

Summary

Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.

Vulnerable Configurations

Part Description Count
Application
Yabb
4

Exploit-Db

descriptionYaBB 9.1.2000 Cross-Agent Scripting Vulnerability. CVE-2002-0117 . Webapps exploit for cgi platform
idEDB-ID:21208
last seen2016-02-02
modified2002-01-09
published2002-01-09
reporterObscure
sourcehttps://www.exploit-db.com/download/21208/
titleYaBB 9.1.2000 - Cross-Agent Scripting Vulnerability