info
discussion
exploit
solution
references
phpBB Privmsg.PHP Cross-Site Scripting Vulnerability
Solution:
The vendor has released phpBB 2.0.6c to address this and other issues. Users are advised to upgrade to the fixed version.
phpBB Group phpBB 2.0.6
phpBB Group phpBB-2.0.6.zip
http://prdownloads.sourceforge.net/phpbb/phpBB-2.0.6.zip?download
Privacy Statement
Copyright 2010, SecurityFocus