[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

MyBB ChangUonDyu Extra File Chatbox Persistent XSS Vulnerability

Author
n3urot0xin
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-19957
Category
web applications
Date add
13-12-2012
Platform
php
ChangUonDyu Extra File Chatbox Persistent XSS

Location: Chatbox Notice
Vendor: http://community.mybb.com/thread-63559.html

PoC:

function build_notice()
{
	global $fcbfile,$smilies;
	$noticef = file_get_contents($fcbfile['notice']);
	$handle = fopen($fcbfile['ds_notice'],"w");
	if ($noticef)
	{
		$noticef = BBCode($noticef);
		$noticef = strtr($noticef, $smilies);
	}
	fwrite($handle, $noticef);
	fclose($handle);
}

Saves notice to your notice save file without escaping user input.

#  0day.today [2024-11-16]  #