Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other users via the (1) c, (2) f, (3) showtopic, (4) showuser, or (5) username parameters.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:48
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=107851589701916&w=2 - | |
References | () http://secunia.com/advisories/11053 - Exploit, Vendor Advisory | |
References | () http://www.osvdb.org/4154 - | |
References | () http://www.securityfocus.com/bid/9768 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/15403 - |
Information
Published : 2004-11-23 05:00
Updated : 2024-11-20 23:48
NVD link : CVE-2004-0359
Mitre link : CVE-2004-0359
CVE.ORG link : CVE-2004-0359
JSON object : View
Products Affected
invision_power_services
- invision_board
CWE