Description
|
|
Two vulnerabilities were identified in EKINboard, which may be exploited by attackers to inject malicious HTML code.
The flaw is due to an input validation error in the "profile.php" script when processing a specially crafted "id" parameter, which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
The second issue is due to an input validation error in when processing a specially topic "Title", which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
|