Cross-site scripting (XSS) vulnerability in YaBB 1 Gold(SP1.3) and YaBB SE 1.5.1 Final allows remote attackers to inject arbitrary web script via the background:url property in (1) glow or (2) shadow tags.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-05-10T04:00:00
Updated: 2024-08-08T01:07:48.474Z
Reserved: 2005-05-04T00:00:00
Link: CVE-2004-1827
Vulnrichment
No data.
NVD
Status : Modified
Published: 2004-03-15T05:00:00.000
Modified: 2024-11-20T23:51:50.273
Link: CVE-2004-1827
Redhat
No data.