Bugtraq mailing list archives
phpBB2 2.0.22 Cross Site Scripting Vulnerability
From: bugtraq () opencosmo com
Date: 2 Jan 2008 19:54:30 -0000
Opencosmo Security http://www.opencosmo.com Author: Alfredo Panzera, Opencosmo Security Vendor: phpBB.com Version: 2.0.22 Exploit: Go to http://[website]/forum/admin/admin_groups.php and into 'Group description:' insert your XSS.
Current thread:
- phpBB2 2.0.22 Cross Site Scripting Vulnerability bugtraq (Jan 02)
- <Possible follow-ups>
- Re: phpBB2 2.0.22 Cross Site Scripting Vulnerability neothermic (Jan 03)
- Re: Re: phpBB2 2.0.22 Cross Site Scripting Vulnerability admin (Jan 03)
- Re: phpBB2 2.0.22 Cross Site Scripting Vulnerability neothermic (Jan 03)
- AW: phpBB2 2.0.22 Cross Site Scripting Vulnerability Aufmuth Andreas (Jan 04)