Cross-site scripting (XSS) vulnerability in YaBB.pl for YaBB 2.0 RC1 allows remote attackers to inject arbitrary web script or HTML via the username parameter in a usersrecentposts action.
Link | Tags |
---|---|
http://securitytracker.com/id?1013420 | vdb entry vendor advisory |
http://www.securityfocus.com/bid/12756 | exploit vdb entry patch vendor advisory |