CVE-2008-4513: XSS
Published Oct 9, 2008
·Updated
Cross-site scripting (XSS) vulnerability in BBcode API module in Phorum 5.2.8 allows remote attackers to inject arbitrary web script or HTML via nested BBcode image tags.
Affected Software
1 affected component
Phorum Phorum=5.2.8
Event History
Oct 9, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-4513?
CVE-2008-4513 is classified as a moderate severity Cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2008-4513?
To fix CVE-2008-4513, upgrade Phorum to a version that is not affected by this vulnerability.
3
What are the consequences of exploiting CVE-2008-4513?
Exploiting CVE-2008-4513 can allow attackers to execute arbitrary web scripts or HTML in the context of user sessions.
4
Who is affected by CVE-2008-4513?
Only users running Phorum version 5.2.8 are affected by CVE-2008-4513.
5
Is CVE-2008-4513 a recent vulnerability?
CVE-2008-4513 was publicly disclosed in 2008, thus it is not considered a recent vulnerability.