Cross-site scripting (XSS) vulnerability in search.php in Phorum, possibly 5.0.7 beta and earlier, allows remote attackers to inject arbitrary HTML or web script via the subject parameter.
Link | Tags |
---|---|
http://securitytracker.com/id?1010787 | vdb entry exploit |
http://www.securityfocus.com/bid/10822 | vdb entry exploit |
http://phorum.org/cvs-changelog-5.txt | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16831 | vdb entry |