First published: Wed Feb 05 2020(Updated: )
bbPress through 1.0.2 has XSS in /bb-login.php url via the re parameter.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
composer/bbpress/bbpress | <=1.0.2 | |
openMairie Openpresse | <=1.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this bbPress vulnerability is CVE-2011-1150.
CVE-2011-1150 has a severity rating of medium.
The XSS vulnerability in CVE-2011-1150 occurs in the /bb-login.php URL via the 're' parameter.
bbPress version up to and including 1.0.2 is affected by CVE-2011-1150.
To fix CVE-2011-1150, it is recommended to update bbPress to a version higher than 1.0.2.