Cross-site scripting (XSS) vulnerability in showflat.php in Infopop UBB.Threads before 6.5 allows remote attackers to inject arbitrary web script or HTML via the Cat parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ubb.threads | Ubbcentral | 6.0 (including) | 6.0 (including) |
Ubb.threads | Ubbcentral | 6.0.1 (including) | 6.0.1 (including) |
Ubb.threads | Ubbcentral | 6.0.2 (including) | 6.0.2 (including) |
Ubb.threads | Ubbcentral | 6.0.3 (including) | 6.0.3 (including) |
Ubb.threads | Ubbcentral | 6.1 (including) | 6.1 (including) |
Ubb.threads | Ubbcentral | 6.1.1 (including) | 6.1.1 (including) |
Ubb.threads | Ubbcentral | 6.2 (including) | 6.2 (including) |
Ubb.threads | Ubbcentral | 6.2.1 (including) | 6.2.1 (including) |
Ubb.threads | Ubbcentral | 6.2.2 (including) | 6.2.2 (including) |
Ubb.threads | Ubbcentral | 6.2.3 (including) | 6.2.3 (including) |
Ubb.threads | Ubbcentral | 6.3 (including) | 6.3 (including) |
Ubb.threads | Ubbcentral | 6.3.1 (including) | 6.3.1 (including) |
Ubb.threads | Ubbcentral | 6.4 (including) | 6.4 (including) |
Ubb.threads | Ubbcentral | 6.4.1 (including) | 6.4.1 (including) |
Ubb.threads | Ubbcentral | 6.4.2 (including) | 6.4.2 (including) |
Ubb.threads | Ubbcentral | 6.4.3 (including) | 6.4.3 (including) |
Ubb.threads | Ubbcentral | 6.4.4 (including) | 6.4.4 (including) |