UseBB BBcode Color Tag Code Injection Vulnerability

UseBB fails to properly sanitize BBCode '[color]' tags in message posts. This issue can be exploited to inject certain CSS (Cascading Style Sheet) code.

Exploitation of this vulnerability may allow an attacker to manipulate content or launch other attacks.


 

Privacy Statement
Copyright 2010, SecurityFocus