Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Postboard | Postboard | 2.0 (including) | 2.0 (including) |
Postboard | Postboard | 2.0.1 (including) | 2.0.1 (including) |
Postnuke | Postnuke_software_foundation | 0.64 (including) | 0.64 (including) |
Postnuke | Postnuke_software_foundation | 0.70 (including) | 0.70 (including) |
Postnuke | Postnuke_software_foundation | 0.71 (including) | 0.71 (including) |
Postnuke | Postnuke_software_foundation | 0.703 (including) | 0.703 (including) |