CVE-2011-1150: XSS
Published Feb 5, 2020
·Updated
bbPress through 1.0.2 has XSS in /bb-login.php url via the re parameter.
Affected Software
2 affected components
composer/bbpress/bbpress<=1.0.2
bbPress bbPress<=1.0.2
Event History
Feb 5, 2020
CVE Published
via MITRE·09:24 PM
Data Sourced
via MITRE·09:24 PM
DescriptionWeakness
Apr 22, 2022
Advisory Published
via GitHub·12:24 AM
Frequently Asked Questions
1
What is the vulnerability ID for this bbPress vulnerability?
The vulnerability ID for this bbPress vulnerability is CVE-2011-1150.
2
What is the severity of CVE-2011-1150?
CVE-2011-1150 has a severity rating of medium.
3
How does the XSS vulnerability in CVE-2011-1150 occur?
The XSS vulnerability in CVE-2011-1150 occurs in the /bb-login.php URL via the 're' parameter.
4
Which version of bbPress is affected by CVE-2011-1150?
bbPress version up to and including 1.0.2 is affected by CVE-2011-1150.
5
Is there a fix available for CVE-2011-1150?
To fix CVE-2011-1150, it is recommended to update bbPress to a version higher than 1.0.2.