Vulnerabilities > CVE-2002-0535

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
postboard
postnuke-software-foundation
exploit available

Summary

Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title.

Exploit-Db

  • descriptionPostBoard 2.0 BBCode IMG Tag Script Injection Vulnerability. CVE-2002-0535. Webapps exploit for php platform
    idEDB-ID:21401
    last seen2016-02-02
    modified2002-04-19
    published2002-04-19
    reportergcsb
    sourcehttps://www.exploit-db.com/download/21401/
    titlePostBoard 2.0 BBCode IMG Tag Script Injection Vulnerability
  • descriptionPostBoard 2.0 Topic Title Script Execution Vulnerability. CVE-2002-0535. Webapps exploit for php platform
    idEDB-ID:21403
    last seen2016-02-02
    modified2002-04-19
    published2002-04-19
    reportergcsb
    sourcehttps://www.exploit-db.com/download/21403/
    titlePostBoard 2.0 Topic Title Script Execution Vulnerability