CVE-2002-0535: Medium severity postnuke software foundation postnuke vulnerability
Published Jun 11, 2002
·Updated
Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title.
Affected Software
6 affected components
Postnuke Software Foundation Postnuke=0.71
PostBoard PostBoard=2.0.1
Postnuke Software Foundation Postnuke=0.64
Postnuke Software Foundation Postnuke=0.703
PostBoard PostBoard=2.0
Postnuke Software Foundation Postnuke=0.70
Remediation
Patch Available
Patch Available
Event History
Jun 11, 2002
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0535?
CVE-2002-0535 has a moderate severity rating due to its potential for cross-site scripting attacks.
2
How do I fix CVE-2002-0535?
To fix CVE-2002-0535, ensure that you upgrade to PostBoard versions later than 2.0.1 which contain security patches.
3
What are the affected versions of PostBoard in CVE-2002-0535?
The affected versions of PostBoard in CVE-2002-0535 are 2.0.1 and earlier.
4
Can CVE-2002-0535 affect user data?
Yes, CVE-2002-0535 can potentially compromise user data by executing malicious scripts in the context of other users.
5
What type of attack is associated with CVE-2002-0535?
CVE-2002-0535 is associated with cross-site scripting (XSS) attacks.