Arbitrary Web Script Execution and Administrative Access Vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.x

Arbitrary Web Script Execution and Administrative Access Vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.x

CVE-2003-0587 · MEDIUM Severity

AV:L/AC:M/AU:N/C:C/I:C/A:C

Cross-site scripting (XSS) vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.x allows remote authenticated users to execute arbitrary web script and gain administrative access via the "displayed name" attribute of the "ubber" cookie.

Learn more about our Web App Pen Testing.