7.1
CVSSv2

CVE-2003-0590

Published: 18/08/2003 Updated: 18/10/2016
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 715
Vector: AV:N/AC:M/Au:N/C:N/I:C/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote malicious users to insert arbitrary HTML and web script via the post icon (image_subject) field.

Vulnerable Product Search on Vulmon Subscribe to Product

splatt splatt forum

Exploits

source: wwwsecurityfocuscom/bid/8198/info Splatt Forum has been reported prone to a HTML injection vulnerability An attacker may save a Splatt Forum post form, and modify it so that the post icon value contains arbitrary attacker supplied HTML code As a result, a malicious user may have the ability to submit a post to the site containi ...