Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field.
References
Configurations
Information
Published : 2001-11-14 21:00
Updated : 2016-10-17 19:12
NVD link : CVE-2001-0897
Mitre link : CVE-2001-0897
JSON object : View
CWE
Products Affected
infopop
- ultimate_bulletin_board