CVE-2004-1965

NUCLEI

OpenBB 1.0.6 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) redirect parameter to member.php, (2) to parameter to myhome.php (3) TID parameter to post.php, or (4) redirect parameter to index.php.

Exploits (5)

exploitdb WRITEUP VERIFIED
by JeiAr · textwebappsphp
https://www.exploit-db.com/exploits/24054
exploitdb WRITEUP VERIFIED
by JeiAr · textwebappsphp
https://www.exploit-db.com/exploits/24053
exploitdb WRITEUP VERIFIED
by JeiAr · textwebappsphp
https://www.exploit-db.com/exploits/24052
exploitdb WRITEUP VERIFIED
by JeiAr · textwebappsphp
https://www.exploit-db.com/exploits/24055
exploitdb WRITEUP
by GulfTech Security · textwebappsphp
https://www.exploit-db.com/exploits/43811

Nuclei Templates (1)

Open Bulletin Board (OpenBB) v1.0.6 - Open Redirect/XSS
MEDIUMby ctflearner

Scores

EPSS 0.0027
EPSS Percentile 50.0%

Details

Status published
Published Apr 25, 2004
Tracked Since Feb 18, 2026