Multiple cross-site scripting (XSS) vulnerabilities in Gravity Board X (GBX) 1.1 allow remote attackers to inject arbitrary web script or HTML via (1) the board_id parameter to deletethread.php or (2) the template.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/14497 | vdb entry |
http://securitytracker.com/alerts/2005/Aug/1014631.html | vdb entry exploit |
http://marc.info/?l=bugtraq&m=112351740803443&w=2 | mailing list |