CVE-2002-2230 Information

Description

Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via a private message with a javascript: URL in the IMG tag in which the URL ends in a .gif\ or .jpg\ string a variant of CVE-2002-0328.

Reference

http://archives.neohapsis.com/archives/bugtraq/2002-10/0069.html http://www.iss.net/security_center/static/10268.php

Share on: