CVE-2002-2021
WoltLab Burning Board 1.1.1 - Cross-Site Scripting via Message Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-2021. PoCs published by SeazoN.
AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in Burning Board forum software by crafting a malicious link that performs actions on behalf of an authenticated user. The PoC uses a PHP redirect to manipulate URL parameters, including BBCode, to execute unintended actions.
Description
Cross-site scripting (XSS) vulnerability in WoltLab Burning Board (wbboard) 1.1.1 allows remote attackers to inject arbitrary web script or HTML via the message parameter.
Exploits (1)
This exploit demonstrates a CSRF vulnerability in Burning Board forum software by crafting a malicious link that performs actions on behalf of an authenticated user. The PoC uses a PHP redirect to manipulate URL parameters, including BBCode, to execute unintended actions.