Cross-site scripting (XSS) vulnerability in register.php for vBulletin 3.0 Beta 2 allows remote attackers to inject arbitrary HTML or web script via optional fields such as (1) Interests-Hobbies, (2) Biography, or (3) Occupation.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vbulletin | Jelsoft | 3.0_beta_2 (including) | 3.0_beta_2 (including) |