Description
|
|
Multiple vulnerabilities were identified in PwsPHP, which may be exploited by malicious users to conduct Cross Site Scripting attacks. These flaws reside in the "index.php", "profil.php", and "memberlist" files when handling specially crafted "month", "nbractif", "annee", "id", "mb_lettre", "lettre" and "chaine_search" parameters, which may be exploited to cause arbitrary scripting code to be executed by the user's browser.
|