2.6
CVSSv2

CVE-2006-0770

Published: 18/02/2006 Updated: 20/07/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in calendar.php in MyBulletinBoard (MyBB) 1.0.4 allows remote malicious users to inject arbitrary web script or HTML via a URL that is not sanitized before being returned as a link in "advanced details". NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

mybulletinboard mybulletinboard 1.0 final

mybulletinboard mybulletinboard 1.0 rc4

mybulletinboard mybulletinboard 1.0.3

mybulletinboard mybulletinboard 1.0 pr2

mybulletinboard mybulletinboard 1.0.1

mybulletinboard mybulletinboard 1.0.4

mybulletinboard mybulletinboard 1.0.2

mybulletinboard mybulletinboard 1.0 rc2

mybulletinboard mybulletinboard 1.0 preview release 2