4 results (0.002 seconds)

CVSS: 6.1EPSS: 0%CPEs: 2EXPL: 1

31 Dec 2003 — Cross-site scripting vulnerability (XSS) in WWWBoard 2.0A2.1 and earlier allows remote attackers to inject arbitrary HTML or web script via a message post. • http://archives.neohapsis.com/archives/bugtraq/2003-02/0274.html •

CVSS: 10.0EPSS: 3%CPEs: 1EXPL: 1

16 Sep 1999 — WWWBoard stores encrypted passwords in a password file that is under the web root and thus accessible by remote attackers. • https://www.exploit-db.com/exploits/3065 •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

16 Sep 1999 — WWWBoard has a default username and default password. • http://www.securityfocus.com/bid/649 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

03 Sep 1998 — wwwboard allows a remote attacker to delete message board articles via a malformed argument. • http://www.securityfocus.com/bid/1795 •