7.5
CVSSv2

CVE-2002-0330

Published: 25/06/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in codeparse.php of Open Bulletin Board (OpenBB) 1.0.0 allows remote malicious users to execute arbitrary script and steal cookies via Javascript in the IMG tag.

Vulnerable Product Search on Vulmon Subscribe to Product

openbb openbb 1.0.0_beta1

openbb openbb 1.0.0_rc1

openbb openbb 1.0.0_rc2

Exploits

source: wwwsecurityfocuscom/bid/4819/info OpenBB is web forum software written in PHP It will run on most Linux and Unix variants, in addition to Microsoft Windows operating systems OpenBB is reportedly vulnerable to HTML injection attacks The vulnerability occurs when HTML code is replaced with BBCodes OpenBB uses 'BBCodes' in the ...
source: wwwsecurityfocuscom/bid/4171/info OpenBB is web forum software written in PHP It will run on most Linux and Unix variants, in addition to Microsoft Windows operating systems OpenBB allows users to include images in forum messages using image tags, with the following syntax: [img]url of image[/img] It is possible to inject arb ...