Cross-site scripting (XSS) vulnerability in YaBB.pl in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 allows remote attackers to inject arbitrary web script or HTML via the num parameter.
| Software | From | Fixed in |
|---|---|---|
| yabb / yabb | 1_gold_-_sp_1 | 1_gold_-_sp_1.x |