CVE-2005-4655 Information

Description

Cross-site scripting (XSS) vulnerability in submit.php in PHP-Fusion 6.0.204 allows remote attackers to inject arbitrary web script or HTML via nested tags in the news_body parameter as demonstrated by elements such as \memetata\ and \scscriptript.

Reference

http://archives.neohapsis.com/archives/bugtraq/2005-10/0272.html http://secunia.com/advisories/17312 http://securityreason.com/securityalert/106 http://www.vupen.com/english/advisories/2005/2192

Share on: