MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in Vt-Forum Lite 1.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) StrMsg or (2) Topic_ID parameter to (a) vf_info.asp, (b) vf_newtopic.asp, (c) vf_settings.asp, and (d) vf_replytopic.asp, different vectors than CVE-2006-6447
Published Dec 14, 2006
6.8
MEDIUMCVSS 2.0
EPSS 1.13%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.