Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!

Top Posters

Who's Online (1)

Powered by Vanilla. Made with Bootstrap.
My Debian Hacklab Proving Useful
  • Xin
    Posts: 3,251
    MyBB Recent Topics Stored XSS Vulnerability
    Version: MyBB 1.6.2
    Plugin Page: http://mods.mybb.com/view/recent-topics-on-index-page
    Found by: Xinapse
    Site: http://www.iexploit.org
    Risk: Medium/High

    Description: By creating a thread with your XSS code as the title any user with any level of privellages can cause XSS on the index.php main page.
    For example: <script>alert('xss')</script>

    Shouts: Semtex, Chronic, Bursihido, D0wngrade, George


    Just found this while doing some research into some plugins.
    Xin
  • Sh3llc0d3
    Posts: 1,910
    Nice find Xin :)
  • __Good Work Bro__ : )