Cross-site scripting (XSS) vulnerability in index.php in Yet another Bulletin Board (YaBB) allows remote attackers to inject arbitrary web script or HTML via the categories parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Yabb | Yabb | 1.5.1 (including) | 1.5.1 (including) |
Yabb | Yabb | 1.5.2 (including) | 1.5.2 (including) |
Yabb | Yabb | 1.5.4 (including) | 1.5.4 (including) |
Yabb | Yabb | 1.5.5 (including) | 1.5.5 (including) |
Yabb | Yabb | 1.5.5b (including) | 1.5.5b (including) |