Vulnerabilities > CVE-2003-0375 - Unspecified vulnerability in XMB Forum XMB 1.11/1.6/1.8
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE Summary
Cross-site scripting (XSS) vulnerability in member.php of XMBforum XMB 1.8.x (aka Partagium) allows remote attackers to insert arbitrary HTML and web script via the "member" parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description XMB Forum 1.8 member.php member Parameter XSS. CVE-2003-0375. Webapps exploit for php platform id EDB-ID:22820 last seen 2016-02-02 modified 2003-06-23 published 2003-06-23 reporter Knight Commander source https://www.exploit-db.com/download/22820/ title XMB Forum 1.8 member.php member Parameter XSS description XMB Forum 1.8 Member.PHP Cross-Site Scripting Vulnerability. CVE-2003-0375. Webapps exploit for php platform id EDB-ID:22632 last seen 2016-02-02 modified 2003-06-22 published 2003-06-22 reporter Marc Ruef source https://www.exploit-db.com/download/22632/ title XMB Forum 1.8 Member.PHP Cross-Site Scripting Vulnerability
Nessus
NASL family | CGI abuses : XSS |
NASL id | XMB_XSS.NASL |
description | The remote host is running XMB Forum, a web forum written in PHP. The version of XMB installed on the remote host is affected by several cross-site scripting issues. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11527 |
published | 2003-04-08 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11527 |
title | XMB < 1.9.1 Multiple XSS |
code |
|
Statements
contributor | |
lastmodified | 2008-12-11 |
organization | XMB |
statement | XMB versions 1.9.8 and later were checked and are not vulnerable. |