Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2004-1863

Multiple cross-site scripting (XSS) vulnerabilities in XMB (aka extreme message board) 1.9 beta (aka Nexus beta) allow remote attackers to inject arbitrary web script or HTML via (1) the u2uheader parameter in editprofile.php, the restrict parameter in (2) member.php, (3) misc.php, and (4) today.php, and (5) an arbitrary parameter in phpinfo.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.3%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2004-1863
  • Xmb Forum » Xmb » Version: 1.8_sp3
    cpe:2.3:a:xmb_forum:xmb:1.8_sp3
  • Xmb Forum » Xmb » Version: 1.9_beta
    cpe:2.3:a:xmb_forum:xmb:1.9_beta


Contact Us

Shodan ® - All rights reserved