VYPR

Az Bulletin Board

by Azbb

CVEs (2)

  • CVE-2006-0407Jan 25, 2006
    risk 0.03cvss epss 0.03

    Cross-site scripting (XSS) vulnerability in post.php in AZ Bulletin Board (AZbb) 1.1.00 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) nickname parameter and (2) an iframe tag in the topic parameter. NOTE: the original disclosure…

  • CVE-2005-1200May 2, 2005
    risk 0.03cvss epss 0.03

    PHP remote file inclusion vulnerability in main_index.php in AZ Bulletin Board (AZbb) 1.0.07a through 1.0.07c allows remote attackers to execute arbitrary PHP code by modifying the (1) dir_src or (2) abs_layer parameter to reference a URL on a remote web server that contains the…