YaBB.pl XSS Vulnerability in YaBB 1 GOLD SP 1.3.2

YaBB.pl XSS Vulnerability in YaBB 1 GOLD SP 1.3.2

CVE-2004-2402 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in YaBB.pl in YaBB 1 GOLD SP 1.3.2 allows remote attackers to inject arbitrary web script or HTML via a hex-encoded to parameter. NOTE: some sources say that the board parameter is affected, but this is incorrect.

Learn more about our Web App Pen Testing.