[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
BBSxp Xss vulnerability
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: BBSxp Xss vulnerability
- From: arashps0@xxxxxxxxx
- Date: Fri, 23 Jan 2009 08:08:23 -0700
Product name: BBSxp System
Vendor: www.bbsxp.com
BBSxp 5.13 & prior versions XSS bug (in error.asp page)
Example:
http://example/bbs/error.asp?message=xss