Cross-site scripting (XSS) vulnerability in BBcode.pm in M. Blom HTML::BBCode 1.04 and earlier, as used in products such as My Blog before 1.65, allows remote attackers to inject arbitrary Javascript via a javascript URI in an (1) img or (2) url BBcode tag.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-02-16 11:02
Updated : 2025-04-03 01:03
NVD link : CVE-2006-0735
Mitre link : CVE-2006-0735
CVE.ORG link : CVE-2006-0735
JSON object : View
Products Affected
fuzzymonkey
- my_blog
m_blom
- html-bbcode
CWE