MyBB 1.0.1~printthread.php~XSS Attack
Posted by imei on December 31st, 2005——————–Summary—————-
Software: MyBB
Sowtware’s Web Site: http://www.mybboard.com
Versions: 1.0.1
Class: Remote
Status: Unpatched
Exploit: Available
Solution: Not Available
Discovered by: imei addmimistrator
Risk Level:low
—————–Description—————
Mybb has a security bug that allows hackers run unwanted scripts into client’s browser that well known as XSS cross site scripting
this bug is in result of poor checking htmlspecialchars in printthread.php view of a topic and can exploit without […]