CVE-2004-2279

Cross-site scripting (XSS) vulnerability in Invision Power Board 1.3 Final allows remote attackers to execute arbitrary script as other users via the pop parameter in a chat action to index.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:invision_power_services:invision_power_board:1.3_final:*:*:*:*:*:*:*

History

20 Nov 2024, 23:52

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2004-03/0082.html - Exploit () http://archives.neohapsis.com/archives/bugtraq/2004-03/0082.html - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/15448 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/15448 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:52


NVD link : CVE-2004-2279

Mitre link : CVE-2004-2279

CVE.ORG link : CVE-2004-2279


JSON object : View

Products Affected

invision_power_services

  • invision_power_board