Quote:
Originally Posted by EliasAlucard
Do they have to register an account and write something in the HTML-enabled section in order to exploit security vulnerabilities, or is it enough to just enable HTML in the first place in order to open up the forum for vulnerabilities?
|
The risk is someone
using the HTML on your forum. So whatever usergroup has the ability, is where the risk lies.