Date Reported: 01/08/2002
Brief Description: Ultimate Bulletin Board allows hexadecimal URL
encoded cross-site scripting
Risk Factor: Medium
Attack Type: Network Based
Platforms Affected: Ultimate Bulletin Board 6.2.0 B1 and earlier
Vulnerability: ultimatebb-encoded-css
X-Force URL:
http://xforce.iss.net/static/7838.phpDate Reported: 01/08/2002
Brief Description: YaBB hexadecimal URL encoded cross-site
scripting
Risk Factor: Medium
Attack Type: Network Based
Platforms Affected: YaBB 1 Gold SP1 & earlier
Vulnerability: yabb-encoded-css
X-Force URL:
http://xforce.iss.net/static/7840.phpDate Reported: 01/08/2002
Brief Description: Allaire Forums! could allow an attacker to post
messages as another user
Risk Factor: Low
Attack Type: Network Based
Platforms Affected: Forums! 3.1 and earlier
Vulnerability: allaire-forums-message-spoofing
X-Force URL:
http://xforce.iss.net/static/7841.php