Cross-site scripting (XSS) vulnerability in comment.php for paNews 2.0b4 for PHP Arena allows remote malicious users to inject arbitrary HTML and web script via the showpost parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phparena panews 2.0b4 |