4.3
CVSSv2

CVE-2004-2055

Published: 19/07/2004 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in search.php for PhpBB 2.0.4 and 2.0.9 allows remote malicious users to inject arbitrary HTMl or web script via the search_author parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

phpbb group phpbb 2.0.5

phpbb group phpbb 2.0.7a

phpbb group phpbb 2.0.8

phpbb group phpbb 2.0.1

phpbb group phpbb 2.0.3

phpbb group phpbb 2.0 rc2

phpbb group phpbb 2.0 rc1

phpbb group phpbb 2.0.4

phpbb group phpbb 2.0.9

phpbb group phpbb 2.0.7

phpbb group phpbb 2.0.8a

phpbb group phpbb 2.0.6d

phpbb group phpbb 2.0.2

phpbb group phpbb 2.0.6c

phpbb group phpbb 2.0 rc4

phpbb group phpbb 2.0.6

phpbb group phpbb 2.0.0

phpbb group phpbb 2.0 rc3

phpbb group phpbb 2.0 beta1