MBoard 1.3 - 'url' Open Redirection

EDB-ID:

35989

CVE:

N/A




Platform:

PHP

Date:

2011-07-27


source: https://www.securityfocus.com/bid/48902/info

MBoard is prone to a URI-redirection vulnerability because the application fails to properly sanitize user-supplied input.

A successful exploit may aid in phishing attacks; other attacks are possible.

MBoard 1.3 is vulnerable; other versions may also be affected. 

http://www.example.com/go.php?url=http://example.com