CVE-2008-6631 Information
Feb 14, 2021
cve
Description
Multiple cross-site scripting (XSS) vulnerabilities in index.php in BlogPHP 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) user parameter in a sendmessage action and the (2) username parameter when registering a new user different vectors than CVE-2008-0679.
Reference
http://osvdb.org/45038 http://secunia.com/advisories/30165 http://www.davidsopas.com/soapbox/blogphp.txt http://www.securityfocus.com/bid/29133 https://exchange.xforce.ibmcloud.com/vulnerabilities/42369 https://exchange.xforce.ibmcloud.com/vulnerabilities/42370
Share on: