7.5
CVSSv2

CVE-2002-0328

Published: 25/06/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in Ikonboard 3.0.1 allows remote malicious users to execute arbitrary script as other Ikonboard users and steal cookies via Javascript in an IMG tag.

Vulnerable Product Search on Vulmon Subscribe to Product

ikonboard.com ikonboard 3.0.1

ikonboard.com ikonboard 2.17

Exploits

source: wwwsecurityfocuscom/bid/4182/info Ikonboard is a Web Bulletin Board Service (BBS) software package written in Perl which runs on Unix and Linux variants Ikonboard allows users to include images in forum messages using image tags, with the following syntax: [img]url of image[/img] It is possible to inject arbitrary script code ...