about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Woltlab Burning Board Multiple Input Validation Vulnerabilites


Title Woltlab Burning Board Multiple Input Validation Vulnerabilites
Published 2009-03-09-12:00AM
Updated 2009-03-12-03:26PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Juri Gianni aka yeat
Vulnerable  Woltlab Burning Board 3.0.5
Woltlab Burning Board 3.0.3 PL 1
Woltlab Burning Board 3.0
Not Vulnerable  
Code  The attacker can exploit these issues through a browser. To exploit the cross-site scripting and URI-redirection vulnerabilities, the attacker must entice an unsuspecting user to follow a malicious URI.The following example URIs are available:http://www.example.com/[path]/wcf/acp/dereferrer.php?url=javascript:alert("Example");
http://www.example.com/[path]/wcf/acp/dereferrer.php?url=http://[host]
http://www.example.com/[path]/wbb/?page=ThreadAction&action=deleteAll&boardID=1&url=[local URL]
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Mon, 09 Nov 2009 09:45:49 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Www.18year times indenxxxph domino 5.0 www.511278 www.kf98.c sexy nayan Sex pussy sexjobs www.six300 www.52meng Mp3 watch 0x2c www.mophoo www.iransp _Zen Cart adobe read www.kaskus kajalsex. news for c comersus 7 myspace Crack Data Www.sexgam sibel jan MOVI www.lqwzjs WWW.SEX co nginx www.xNxx.c www.sex to Easy e www.oxbrid hongwu.net www.govdj. search/exp 43things.c buffer ove hot sexy news for c modernbill mycp sperm swap www.189199 Www.xnxxx. www.uyba.c www.dalina SESSID Pyar jhukt NAMITHAIMA