CVE-2006-0140
MEDIUM 4.3EPSS 1.4%
Cross-site scripting (XSS) vulnerability in post.php in NavBoard V16 Stable(2.6.0) and V17beta2 allows remote attackers to inject arbitrary web script or HTML via the (1) b, (2) textlarge, and (3) url bbcode tags.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N - EPSS
- 1.43% chance of exploitation in the next 30 days, 71th percentile
- Published
- 2006-01-09
- Updated
- 2024-08-07