Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ASP-DEV XM Forum IMG Tag Script Injection Vulnerability

XM Forum is reported prone to a script injection vulnerability.

An attacker can supply arbitrary HTML and script code through the BBCode IMG tag to trigger this issue and execute arbitrary script code in a user's browser.

XM Forum RC3 is reported vulnerable. It is possible that other versions are affected as well.







 

Privacy Statement
Copyright 2008, SecurityFocus