TUCoPS :: Web BBS :: etc :: hack1622.htm

fusetalk forum XSS
XXS in fusetalk forum

Vendor : fusetalk
URL : http://www.fusetalk.com/ 
Version: 4.0
Risk : Cross site scripting
 
Description: Fusetalk is a discussion forum solution that provides a
powerful and simple method of web-based collaboration.
 
 
Cross site scripting: The filtering script for the img src= doesnt
filter " if preceeded by a ?. The cross site scripting works because the

TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2024 AOH