Cross Site Scripting (XSS) vulnerability in Gnuboard 5.6.15 allows authenticated attackers to execute arbitrary code via crafted c_id parameter in bbs/view_comment.php.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 28 Oct 2025 02:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Sir
         Sir gnuboard  | 
|
| CPEs | cpe:2.3:a:sir:gnuboard:5.6.15:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Sir
         Sir gnuboard  | 
Fri, 24 Oct 2025 10:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Gnuboard
         Gnuboard gnuboard5  | 
|
| Vendors & Products | 
        
        Gnuboard
         Gnuboard gnuboard5  | 
Thu, 23 Oct 2025 21:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics | 
        
        cvssV3_1
         
 
  | 
Thu, 23 Oct 2025 18:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Cross Site Scripting (XSS) vulnerability in Gnuboard 5.6.15 allows authenticated attackers to execute arbitrary code via crafted c_id parameter in bbs/view_comment.php. | |
| References | 
         | 
Status: PUBLISHED
Assigner: mitre
Published: 2025-10-23T00:00:00.000Z
Updated: 2025-10-23T20:33:15.676Z
Reserved: 2025-09-26T00:00:00.000Z
Link: CVE-2025-60859
Updated: 2025-10-23T20:33:09.633Z
Status : Analyzed
Published: 2025-10-23T19:15:50.867
Modified: 2025-10-28T02:36:12.920
Link: CVE-2025-60859
No data.