CVE-2003-1184

Multiple cross-site scripting (XSS) vulnerabilities in ThWboard Beta 2.8 and 2.81 allow remote attackers to inject arbitrary web script or HTML via (1) time in board.php, (2) the profile Homepage-Feld, (3) pictures, and (4) other "Diverse XSS Bugs."
References
Link Resource
http://secunia.com/advisories/10120 Patch Vendor Advisory
http://sourceforge.net/project/shownotes.php?release_id=195009 Vendor Advisory
http://www.osvdb.org/3077 Exploit Patch Vendor Advisory
http://www.osvdb.org/4825 Exploit Patch Vendor Advisory
http://www.osvdb.org/4826 Exploit Patch Vendor Advisory
http://www.osvdb.org/4827 Exploit Patch Vendor Advisory
http://www.osvdb.org/4828 Exploit Patch Vendor Advisory
http://www.osvdb.org/4829 Exploit Patch Vendor Advisory
http://www.securityfocus.com/bid/8959 Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/13582
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:thwboard:thwboard:2.8_beta:*:*:*:*:*:*:*
cpe:2.3:a:thwboard:thwboard:2.81_beta:*:*:*:*:*:*:*

History

No history.

Information

Published : 2003-11-03 05:00

Updated : 2024-02-04 16:31


NVD link : CVE-2003-1184

Mitre link : CVE-2003-1184

CVE.ORG link : CVE-2003-1184


JSON object : View

Products Affected

thwboard

  • thwboard