Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin prior to 3.6.7 PL1 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors, related to the vb_367_xss_fix_plugin.xml update, a related issue to CVE-2007-2909.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jelsoft vbulletin |