Cross-site scripting (XSS) vulnerability in tag.php in CloudNine Interactive CJ Tag Board 3.0 allows remote attackers to inject arbitrary web script or HTML via a JavaScript event in a url BBcode tag in the cjmsg parameter.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/20000 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/28501 | vdb entry |
http://evuln.com/vulns/137/summary.html | |
http://www.securityfocus.com/archive/1/445913/100/0/threaded | mailing list |
http://securityreason.com/securityalert/1580 | third party advisory |