Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

PHP-Nuke Nuke League Module 'tid' Parameter Cross-Site Scripting Vulnerability

An attacker can exploit this issue by enticing an unsuspecting victim into following a malicious URI.

The following example URI is available:

http://www.example.com/modules.php?name=League&file=index&op=team&tid=[XSS]







 

Privacy Statement
Copyright 2008, SecurityFocus