[30077] in bugtraq

home help back first fref pref prev next nref lref last post

A Phorum's bug...

daemon@ATHENA.MIT.EDU (WiciU)
Fri May 9 16:18:09 2003

Date: 9 May 2003 17:37:09 -0000
Message-ID: <20030509173709.14620.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: WiciU <vviciu@poczta.onet.pl>
To: bugtraq@securityfocus.com



Hi!
I have founded a bug in Phorum (http://phorum.org/).
It is possible to inject script code or other html-tag into "subject",
"author's name" or "author's e-mail" of a message in Phorum.
In the subject (name, e-mail) input of message you need to write any
html-tag like this:
<<b>script>alert(document.cookie);<<b>/script>
I have tested it on Phorum 3.4.1 but probably works in other Phorum 3.x.x
versions.
Greetings!

WiciU, Poland
vviciu@poczta.onet.pl

home help back first fref pref prev next nref lref last post