Vulnerabilities > CVE-2003-0590 - Cross-Site Scripting vulnerability in Splatt Forum

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
COMPLETE
Availability impact
NONE
network
splatt
exploit available

Summary

Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote attackers to insert arbitrary HTML and web script via the post icon (image_subject) field.

Vulnerable Configurations

Part Description Count
Application
Splatt
1

Exploit-Db

descriptionSplatt Forum 3/4 Post Icon HTML Injection Vulnerability. CVE-2003-0590. Webapps exploit for php platform
idEDB-ID:22910
last seen2016-02-02
modified2003-07-15
published2003-07-15
reporterLethalman
sourcehttps://www.exploit-db.com/download/22910/
titleSplatt Forum 3/4 Post Icon HTML Injection Vulnerability