Multiple cross-site scripting (XSS) vulnerabilities in ThWboard Beta 2.8 and 2.81 allow remote attackers to inject arbitrary web script or HTML via (1) time in board.php, (2) the profile Homepage-Feld, (3) pictures, and (4) other Diverse XSS Bugs.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Thwboard | Thwboard | 2.8_beta (including) | 2.8_beta (including) |
Thwboard | Thwboard | 2.81_beta (including) | 2.81_beta (including) |