Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Yabb | Yabb | 0.01_release-gold (including) | 0.01_release-gold (including) |
Yabb | Yabb | 0.01_sp1-gold (including) | 0.01_sp1-gold (including) |
Yabb | Yabb | 2000-09-01 (including) | 2000-09-01 (including) |
Yabb | Yabb | 2000-09-11 (including) | 2000-09-11 (including) |