Cross-site scripting (XSS) vulnerability in parser.php in phpCMS 1.2.1 and earlier, with non-stealth and debug modes enabled, allows remote attackers to inject arbitrary web script or HTML via the file parameter.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-01-09 21:00
Updated : 2017-07-10 18:30
NVD link : CVE-2004-1202
Mitre link : CVE-2004-1202
JSON object : View
CWE
Products Affected
phpcms
- phpcms