Vulnerability Description
Cross-site scripting (XSS) vulnerability in MT312 REP-BBS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) model.php and (2) config.php with timestamps before 20090521.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mt312 | Rep-Bbs | All versions |
Related Weaknesses (CWE)
References
- http://jvn.jp/en/jp/JVN01115659/index.htmlPatch
- http://jvndb.jvn.jp/en/contents/2009/JVNDB-2009-000033.html
- http://secunia.com/advisories/35251Vendor Advisory
- http://jvn.jp/en/jp/JVN01115659/index.htmlPatch
- http://jvndb.jvn.jp/en/contents/2009/JVNDB-2009-000033.html
- http://secunia.com/advisories/35251Vendor Advisory
FAQ
What is CVE-2009-1880?
CVE-2009-1880 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cross-site scripting (XSS) vulnerability in MT312 REP-BBS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) model.php and (2) config.php with timest...
How severe is CVE-2009-1880?
CVE-2009-1880 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2009-1880?
Check the references section above for vendor advisories and patch information. Affected products include: Mt312 Rep-Bbs.