First published: Sun Mar 20 2005(Updated: )
Cross-site scripting (XSS) vulnerability in PunBB 1.2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) email or (2) Jabber parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PunBB | =1.2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2005-0818 is classified as medium due to the potential for cross-site scripting attacks.
To fix CVE-2005-0818, upgrade to a version of PunBB later than 1.2.3 that includes security patches.
CVE-2005-0818 affects PunBB version 1.2.3.
Yes, CVE-2005-0818 can be exploited remotely by attackers to inject malicious scripts.
CVE-2005-0818 allows injection through the email and Jabber parameters.