4.3
CVSSv2

CVE-2010-4874

Published: 07/10/2011 Updated: 10/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in users.php in NinkoBB 1.3 RC5 allow remote malicious users to inject arbitrary web script or HTML via the (1) first_name, (2) last_name, (3) msn, or (4) aim parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ninkobb ninkobb 1.3

Exploits

Vulnerability ID: HTB22652 Reference: wwwhtbridgech/advisory/xss_in_ninkobbhtml Product: NinkoBB Vendor: NinkoBB ( ninkobbcom ) Vulnerable Version: 13RC5 and probably prior versions Vendor Notification: 13 October 2010 Vulnerability Type: XSS (Cross Site Scripting) Status: Not Fixed, Vendor Alerted, Awaiting Vendor Response ...