Ikonboard User Profile Photo URI...

- AV AC AU C I A
发布: 2002-12-09
修订: 2025-04-13

Ikonboard does not sufficiently sanitize HTML from photo URIs in user profiles. An attacker may take advantage of this issue to embed malicious script code into their user profile. When the profile is viewed by other users, the attacker-supplied script code will execute in the security context of the site hosting the Ikonboard software. This issue was reported in Ikonboard 3.1.1. Other versions may also be affected.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息