6.8
CVSSv2

CVE-2004-0254

Published: 23/11/2004 Updated: 11/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Discuz! Board 2.x and 3.x allows remote malicious users to execute arbitrary script as other users via an img tag.

Vulnerable Product Search on Vulmon Subscribe to Product

crosscom olicom discuz 2.0

crosscom olicom discuz 3.0

Exploits

source: wwwsecurityfocuscom/bid/9584/info It has been reported that Discuz! is prone to an Cross Site Scripting vulnerability This issue is caused by the application failing to properly sanitize links embedded within user messages Upon successful exploitation of this issue, a malicious user could steal cookie based authentication creden ...