CVE-2005-1614

Cross-site scripting (XSS) vulnerability in viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the postorder parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ultimate_php_board:ultimate_php_board:1.8:*:*:*:*:*:*:*
cpe:2.3:a:ultimate_php_board:ultimate_php_board:1.8.2:*:*:*:*:*:*:*
cpe:2.3:a:ultimate_php_board:ultimate_php_board:1.9:*:*:*:*:*:*:*
cpe:2.3:a:ultimate_php_board:ultimate_php_board:1.9.6:*:*:*:*:*:*:*

History

20 Nov 2024, 23:57

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=111600262424876&w=2 - () http://marc.info/?l=bugtraq&m=111600262424876&w=2 -
References () http://www.securityfocus.com/bid/13621 - Exploit, Vendor Advisory () http://www.securityfocus.com/bid/13621 - Exploit, Vendor Advisory

Information

Published : 2005-05-16 04:00

Updated : 2024-11-20 23:57


NVD link : CVE-2005-1614

Mitre link : CVE-2005-1614

CVE.ORG link : CVE-2005-1614


JSON object : View

Products Affected

ultimate_php_board

  • ultimate_php_board