MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Pre News Manager 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) index.php, and the (2) nid parameter to (b) news_detail.php, (c) email_story.php, (d) thankyou.php, (e) printable_view.php, (f) tella_friend.php, and (g) send_comments.php
Published May 31, 2006
5.8
MEDIUMCVSS 2.0
EPSS 2.84%
Description
Affected products
Remediation
References (13)
Change history (0)
No recorded changes yet.