Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> CGI abuses : XSS >> PunBB URL Quote Tag XSS


Vulnerability Assessment Details

PunBB URL Quote Tag XSS

Vulnerability Assessment Summary
Checks for PunBB version

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote web server contains a PHP application that is prone to
cross-site scripting attacks.

Description :

According to its banner, the remote version of PunBB is vulnerable to
cross-site scripting flaws because the application does not validate
URL and quote tags. With a specially-crafted URL, a possible hacker may be
able to inject arbitrary HTML and script code into a user's browser,
resulting in a loss of integrity.

See also :

http://www.punbb.org/changelogs/1.1.4_to_1.1.5.txt

Solution :

Upgrade to PunBB version 1.1.5 or later.

Network Security Threat Level:

Low / CVSS Base Score : 2
(AV:R/AC:L/Au:NR/C:P/A:N/I:N/B:N)

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 David Maciejak

Cables, Connectors


Fanxiang SSD 512GB 1TB 2TB 4TB 2.5''SATA III Internal Solid State Hard Drive LOT picture

Fanxiang SSD 512GB 1TB 2TB 4TB 2.5''SATA III Internal Solid State Hard Drive LOT

$269.98



Netac 1TB 2TB 512GB Internal SSD 2.5'' SATA III 6Gb/s Solid State Drive lot picture

Netac 1TB 2TB 512GB Internal SSD 2.5'' SATA III 6Gb/s Solid State Drive lot

$109.99



SAMSUNG SSD 870 EVO 1TB 500GB 250GB 2.5 inch SATA III 3 Solid State Drive US picture

SAMSUNG SSD 870 EVO 1TB 500GB 250GB 2.5 inch SATA III 3 Solid State Drive US

$97.99



Fanxiang SSD 4TB 2TB 1TB PS5 SSD M.2 NVME SSD 7300MBS PCIe 4.0 Solid State Drive picture

Fanxiang SSD 4TB 2TB 1TB PS5 SSD M.2 NVME SSD 7300MBS PCIe 4.0 Solid State Drive

$237.49



Patriot P210 128GB 256GB 512GB 1TB 2TB 2.5

Patriot P210 128GB 256GB 512GB 1TB 2TB 2.5" SATA 3 6GB/s Internal SSD PC/MAC Lot

$13.99



Crucial MX500 CT250MX500SSD1 250 GB SATA III 2.5 in Solid State Drive picture

Crucial MX500 CT250MX500SSD1 250 GB SATA III 2.5 in Solid State Drive

$14.99



Micron RealSSD C400 2.5

Micron RealSSD C400 2.5" 512GB SATA SSD Solid State Hard Drive MTFDDAK512MAM-1K1

$24.99



Fanxiang M.2 SATA SSD 1TB 2TB 512GB 256GB NGFF M2 Internal Solid State Drive Lot picture

Fanxiang M.2 SATA SSD 1TB 2TB 512GB 256GB NGFF M2 Internal Solid State Drive Lot

$21.99



Fanxiang M.2 SATA SSD 2TB 1TB 512GB 256GB SSD Internal M2 Solid State Drive Lot picture

Fanxiang M.2 SATA SSD 2TB 1TB 512GB 256GB SSD Internal M2 Solid State Drive Lot

$109.99



Fanxiang SSD 512GB 1TB 2TB 4TB 2.5'' SSD SATA III Internal Solid State Drive lot picture

Fanxiang SSD 512GB 1TB 2TB 4TB 2.5'' SSD SATA III Internal Solid State Drive lot

$104.99



Discussions

No Discussions have been posted on this vulnerability.