First published: Fri Jun 06 2003(Updated: )
Cross-site scripting (XSS) vulnerability in member.php of XMBforum XMB 1.8.x (aka Partagium) allows remote attackers to insert arbitrary HTML and web script via the "member" parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
XMB Forum | =1.11 | |
XMB Forum | =1.8 | |
XMB Forum | =1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0375 is considered a medium severity cross-site scripting (XSS) vulnerability.
To fix CVE-2003-0375, validate and sanitize the 'member' parameter in member.php to prevent injection of arbitrary HTML and web script.
CVE-2003-0375 affects XMB Forum versions 1.6, 1.8, and 1.11.
CVE-2003-0375 is classified as a cross-site scripting (XSS) vulnerability.
Yes, CVE-2003-0375 can be exploited remotely by attackers to insert malicious scripts.