exploits , vulnerabilities , articles , UBBCentral UBB.Threads Multiple Cross-Site Scripting Vulnerabilities
| Title |
UBBCentral UBB.Threads Multiple Cross-Site Scripting Vulnerabilities |
| Published |
2005-06-24-12:00AM |
| Updated |
2005-06-24-04:46PM |
| Class |
Input Validation Error |
| CVE |
CVE-MAP-NOMATCH |
| Remote |
Yes |
| Local |
No |
| Credit |
James Bercegay of the GulfTech Security Research Team is credited with the discovery of this vulnerability. |
| Vulnerable |
UBBCentral UBB.threads 6.5.1 .1
UBBCentral UBB.threads 6.5.1
UBBCentral UBB.threads 6.5
UBBCentral UBB.threads 6.2.3
UBBCentral UBB.threads 6.0 |
| Not Vulnerable |
UBBCentral UBB.threads 6.5.2 Beta2 |
| Code |
No exploit is required.
The following proof of concept URI are available: http://www.example.com/ubbt/dosearch.php?Cat=0&Searchpage=2[XSS]&topic= http://www.example.com/ubbt/newreply.php?Cat=0&Board=UBB8&Number=39818[XSS]&page=0&what=showflat&fpart=1&vc=1 http://www.example.com/ubbt/newreply.php?Cat=0&Board=UBB8&Number=39818&page=0&what=showflat[XSS]&fpart=1&vc=1 http://www.example.com/ubbt/newreply.php?Cat=0&Board=UBB8&Number=39818&page=0[XSS]&what=showflat&fpart=1&vc=1 http://www.example.com/ubbt/showprofile.php?Cat=0&User=7&Number=39818[XSS]&Board=UBB8&what=showflat&page=0&fpart=1&vc=1 http://www.example.com/ubbt/showprofile.php?Cat=0&User=7&Number=39818&Board=UBB8[XSS]&what=showflat&page=0&fpart=1&vc=1 http://www.example.com/ubbt/showprofile.php?Cat=0&User=7&Number=39818&Board=UBB8&what=showflat[XSS]&page=0&fpart=1&vc=1 http://www.example.com/ubbt/showflat.php?Cat=0&Board=UBB5&Number=42173&page=0&fpart=all[XSS] http://www.example.com/ubbt/showflat.php?Cat=0&Board=UBB5&Number=42173&page=0[XSS]&fpart=all http://www.example.com/ubbt/showmembers.php?Cat=&like=p[XSS]&sb=1&page=1
|
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Thu, 17 Dec 2009 18:29:19 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
WWW.KOMIK news for C womenwitha njoy.com mambo Remo anapaulaba photobucke visa assoc advanced g www.sex vi WWW.SEXYGI phpBB por news for c Invision P Www sextv www.duoled chat porno 200 /compo virtuemart free ful m cisco vpn SUNRPC Nidji mass www98sex.c Sun One www.cx5158 photo kari pmohdali nameserver Www.gaycol Desi.html/ sex scan mambots/co WWW.SEXY W gauge manhua.rz- bbc games www.shitea sania mirz apache 1.3 sexyimeg quakeworld Imege girl FTVMIDNIGH Dogwomen Arab sex3 powerpoint all cartoo ubuntu6.3 n 800
|