Multiple cross-site scripting (XSS) vulnerabilities in Vikingboard 0.1.2 allow remote attackers to inject arbitrary web script or HTML via the subject field of (1) a private message (PM) or (2) a bulletin board post.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vikingboard | Vikingboard | 0.1.2 (including) | 0.1.2 (including) |