AOH :: Web BBS :: Frequently Exploited :: B06-1466.HTM

MyBB 1.1.0~functions_post.php~XSS Attack

- MyBB 1.1.0~functions_post.php~XSS Attack
- MyBB 1.1.0~functions_post.php~XSS Attack



ORIGINAL ADVISORY:
http://myimei.com/security/2006-03-12/mybb-110functions_postphpxss-attack.html 
http://kapda.ir/advisory-305.html 
----------
=97=97=97=97=97=97-Summary=97=97=97=97=97-
Software: MyBB
Sowtware=92s Web Site: http://www.mybboard.com 
Versions: 1.1.0
Class: Remote
Status: Unpatched
Exploit: Private
Solution: Not Available
Discovered by: imei addmimistrator
Risk Level: medume
=97=97=97=97=97=96Description=97=97=97=97=97
There is a security bug in MyBB 1.1.0 software (latest version fully patched) that allows attacker performe a XSS cross site scripting attack.
VISIT ORIGINALS TO MORE DETAILES;)

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2009 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.