about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Woltlab Burning Board Multiple Input Validation Vulnerabilites


Title Woltlab Burning Board Multiple Input Validation Vulnerabilites
Published 2009-03-09-12:00AM
Updated 2009-03-12-03:26PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Juri Gianni aka yeat
Vulnerable  Woltlab Burning Board 3.0.5
Woltlab Burning Board 3.0.3 PL 1
Woltlab Burning Board 3.0
Not Vulnerable  
Code  The attacker can exploit these issues through a browser. To exploit the cross-site scripting and URI-redirection vulnerabilities, the attacker must entice an unsuspecting user to follow a malicious URI.The following example URIs are available:http://www.example.com/[path]/wcf/acp/dereferrer.php?url=javascript:alert("Example");
http://www.example.com/[path]/wcf/acp/dereferrer.php?url=http://[host]
http://www.example.com/[path]/wbb/?page=ThreadAction&action=deleteAll&boardID=1&url=[local URL]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 21 Nov 2009 14:56:02 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
c ronaldo x33 phoca gall fat &a www.istok8 Microsoft www.jorok. Xex arab f Buffer ove Biba tamilmasal Mambo 5.1. vuln/explo trisha+wal Forens gbook speedup sp xzero CMS is Fre www.taoxia sexyvideos www.178zsw www.betb.c Forens speedup sp My Hot Ass 200 /compo video porn messengerb www.sexy.x Southindia Exploits S news for c www.hi-xx. Www sara s CMS is Fre sythe.rg t746t zeroboard. Fovan\\r\\ addguest.h proxy.org koobi.5d6d www.asshol news for c Sex videog hp buffer sexy+blog play sex port 7.htm