PHPChain CVE-2007-2670 Cross-Site Scripting Vulnerability

PHPChain is prone to a cross-site scripting vulnerability. PHPChain 1.0 and earlier allows remote attackers to obtain the installation path via invalid values of the catid parameter to (1) settings.php or (2) cat.php, as demonstrated by XSS manipulations.


 

Privacy Statement
Copyright 2010, SecurityFocus