Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and previous versions allows remote malicious users to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
yabb yabb 0.01_release |
||
yabb yabb 2000-09-01 |
||
yabb yabb 2000-09-11 |
||
yabb yabb 0.01_sp1 |