info
discussion
exploit
solution
references
OpenBB BBCode Cross Agent HTML Injection Vulnerability
The following proof of concept was provided:
[ img]http:// " onerror="ANYSCRIPT"[/img ]
Privacy Statement
Copyright 2010, SecurityFocus