Multiple cross-site scripting (XSS) vulnerabilities in shout.php in Knusperleicht ShoutBox 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) sbNick or (2) sbKommentar parameter.
Link | Tags |
---|---|
http://www.securityfocus.com/data/vulnerabilities/exploits/21637.html | exploit |
http://secunia.com/advisories/23526 | third party advisory |
http://www.securityfocus.com/bid/21637 | vdb entry exploit |