4.3
CVSSv2

CVE-2008-2493

Published: 28/05/2008 Updated: 11/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in post3/Book.asp in Campus Bulletin Board 3.4 allows remote malicious users to inject arbitrary web script or HTML via the review parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

badongo campus bulletin board 3.4

Exploits

source: wwwsecurityfocuscom/bid/29375/info Campus Bulletin Board is prone to multiple input-validation vulnerabilities, including multiple SQL-injection issues and a cross-site scripting issue, because it fails to sufficiently sanitize user-supplied data Exploiting these issues could allow an attacker to steal cookie-based authenticatio ...