Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2005-0673

Published: 2 May 2005

Cross-site scripting (XSS) vulnerability in usercp_register.php for phpBB 2.0.13 allows remote attackers to inject arbitrary web script or HTML by setting the (1) allowhtml, (2) allowbbcode, or (3) allowsmilies parameters to inject HTML into signatures for personal messages, possibly when they are processed by privmsg.php or viewtopic.php.

Priority

Unknown

Status

Package Release Status
phpbb2
Launchpad, Ubuntu, Debian
dapper
Released (2.0.18-2)
edgy
Released (2.0.18-2)
feisty
Released (2.0.18-2)
upstream Needs triage