MyBB 1.1.0~functions_post.php~XSS Attack
Posted by imei on March 12th, 2006——————-Summary—————-
Software: MyBB
Sowtware’s Web Site: http://www.mybboard.com
Versions: 1.1.0
Class: Remote
Status: Unpatched
Exploit: Private
Solution: Not Available
Discovered by: imei addmimistrator
Risk Level: medume
—————–Description—————
There is a security bug in MyBB 1.1.0 software (latest version fully patched) that allows attacker performe a XSS cross site scripting attack.bug is in phrasing [IMG] & [EMAIL] code process and that is in result of poor checking quotations […]