Secunia Logo
Netsikker nu! 2008
 
phpBB Cross Site Scripting Vulnerability
Secunia Advisory: SA9567
Release Date: 2003-08-19
Popularity: 8,771 views

Critical:
Less critical
Impact: Cross Site Scripting
Where: From remote
Solution Status: Vendor Workaround

Software:phpBB 2.x

Subscribe: Instant alerts on relevant vulnerabilities


Description:
A vulnerability has been identified in phpBB allowing malicious people to conduct Cross Site Scirpting attacks against users.

The problem exists if certain HTML tags like "<A>" is allowed in postings. This allows malicious people to insert javascript event handlers, which essentially can do the same as a script in a "<SCRIPT>" tag.

Example:
<a href="javascript:evil_function();">My_Site</a>

Solution:
The phpBB developers suggest some possible configuration changes:
http://www.phpbb.com/phpBB/viewtopic.php?t=127525

Secunia recommends that you disable HTML tags in postings.

Provided and/or discovered by:
Marvin Massih


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Internet Explorer Three Vulnerabilities // 66 views
2. WordPress WP Comment Remix Plugin Multiple Vulnerabilities // 50 views
3. VLC Media Player XSPF Processing Memory Corruption Vulnerability // 49 views
4. Sun Solaris "sadmind" Buffer Overflow Vulnerability // 48 views
5. Oracle Products Multiple Vulnerabilities // 40 views
6. BEA WebLogic Server Multiple Vulnerabilities // 39 views
7. BEA WebLogic Workshop NetUI Pageflow Information Disclosure Vulnerability // 38 views
8. Elxis mod_language.php Cross-Site Scripting Vulnerability // 38 views
9. Webscene eCommerce "level" SQL Injection Vulnerability // 37 views
10. BEA WebLogic Workshop NetUI Tags Information Disclosure Vulnerability // 37 views