Cross-site scripting (XSS) vulnerability in the GetLocation function in online.php in Jonathon J. Freeman OvBB 0.13a allows remote attackers to inject arbitrary web script or HTML via the aRequest variable.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Ovbb | Jonathon_freeman | 0.13a (including) | 0.13a (including) |