Invision Power Board '.txt' File MIME-Type Cross Site Scripting Vulnerability

Attackers can exploit this issue by enticing an unsuspecting victim to view a malicious text file.

The following example text file is available:


 

Privacy Statement
Copyright 2010, SecurityFocus