First published: Thu Jun 24 2021(Updated: )
Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the url parameter to bbs/login.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gnuboard Gnuboard5 | <=5.3.2.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-18661 is a Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the url parameter to bbs/login.php.
CVE-2020-18661 affects gnuboard5 <=v5.3.2.8 by allowing an attacker to inject malicious scripts into the website and potentially steal sensitive information from users or perform unauthorized actions on their behalf.
The severity of CVE-2020-18661 is medium with a CVSS score of 6.1.
To fix CVE-2020-18661, it is recommended to update to gnuboard5 version 5.3.2.9 or later, which includes a patch for the XSS vulnerability.
More information about CVE-2020-18661 can be found at the following references: [1] [2] [3].