Description
|
|
A vulnerability has been identified in PHP-Fusion, which may be exploited by attackers to inject malicious HTML code. This flaw is due to an input validation error in the "submit.php" script that does not properly filter a specially crafted "news_body" parameter, which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
|