mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 09:41:05 +00:00
18 lines
687 B
Markdown
18 lines
687 B
Markdown
![]() |
### [CVE-2018-6506](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6506)
|
||
|

|
||
|

|
||
|

|
||
|
|
||
|
### Description
|
||
|
|
||
|
Cross-Site Scripting (XSS) exists in the Add Forum feature in the Administrative Panel in miniBB 3.2.2 via crafted use of an onload attribute of an SVG element in the supertitle field.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
- https://offensivehacking.wordpress.com/2018/02/07/minibb-forums-v3-2-2-stored-xss/
|
||
|
|
||
|
#### Github
|
||
|
No PoCs found on GitHub currently.
|
||
|
|