Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SCSSBoard URL Tag Script Injection Vulnerability

sCssBoard is affected by a script injection vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input before using it in dynamically generated content.

An attacker can supply arbitrary javascript code through the BBCode URL tag to trigger this issue and execute arbitrary script code in a user's browser.







 

Privacy Statement
Copyright 2008, SecurityFocus