Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2004-1827
Cross-site scripting (XSS) vulnerability in YaBB 1 Gold(SP1.3) and YaBB SE 1.5.1 Final allows remote attackers to inject arbitrary web script via the background:url property in (1) glow or (2) shadow tags.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.009
EPSS Ranking
74.2%
CVSS Severity
CVSS v2 Score
4.3
References
http://marc.info/?l=bugtraq&m=107936800226430&w=2
http://marc.info/?l=bugtraq&m=107948064923981&w=2
http://secunia.com/advisories/11128
http://securitytracker.com/id?1009427
http://www.securityfocus.com/bid/9873
http://www.yabbforum.com/community/YaBB.pl?board=general%3Baction=display%3Bnum=1093133233
https://exchange.xforce.ibmcloud.com/vulnerabilities/15488
http://marc.info/?l=bugtraq&m=107936800226430&w=2
http://marc.info/?l=bugtraq&m=107948064923981&w=2
http://secunia.com/advisories/11128
http://securitytracker.com/id?1009427
http://www.securityfocus.com/bid/9873
http://www.yabbforum.com/community/YaBB.pl?board=general%3Baction=display%3Bnum=1093133233
https://exchange.xforce.ibmcloud.com/vulnerabilities/15488
Products affected by CVE-2004-1827
Simple Machines
»
Simple Machines Smf
»
Version:
1.0_b
cpe:2.3:a:simple_machines:simple_machines_smf:1.0_b
Yabb
»
Yabb
»
Version:
1.5.1
cpe:2.3:a:yabb:yabb:1.5.1
Yabb
»
Yabb
»
Version:
1_gold_-_sp_1.3
cpe:2.3:a:yabb:yabb:1_gold_-_sp_1.3
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved