Summary
Detail | |||
---|---|---|---|
Vendor | Infopop | First view | 2001-11-15 |
Product | Ultimate Bulletin Board | Last view | 2023-04-27 |
Version | 5.46 | Type | Application |
Update | a | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | * | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:infopop:ultimate_bulletin_board |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
5.3 | 2023-04-27 | CVE-2022-25091 | Infopop Ultimate Bulletin Board up to v5.47a was discovered to allow all messages posted inside private forums to be disclosed by unauthenticated users via the quote reply feature. |
5 | 2001-11-15 | CVE-2001-0897 | Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field. |
Open Source Vulnerability Database (OSVDB)
id | Description |
---|---|
6203 | Ultimate Bulletin Board IMG Tag XSS |