CVE-2009-2783
17.08.2009, 16:30
Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.3.3 allow remote attackers to inject arbitrary web script or HTML via the (1) op parameter to modules/pm/viewpmsg.php and (2) query string to modules/profile/user.php.
Vendor | Product | Version |
---|---|---|
xoops | xoops | 2.3.3 |
𝑥
= Vulnerable software versions
References