CVE-2001-0897

Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field.

Scoring

CVSS base score
0.06
EPSS probability
1.17%
Published
2002-02-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs