Phorum Register.PHP Existing User HTML Injection Vulnerability

Phorum is prone to HTML injection attacks. HTML and script code may be echoed back when an existing user is specified from the registration page. This could potentially permit a malicious attacker to cause the execution of hostile HTML and script code in the web client of a user who visits a vulnerable site hosting Phorum.


 

Privacy Statement
Copyright 2010, SecurityFocus