Cross-site scripting (XSS) vulnerability in Phorum before 5.0.14a allows remote attackers to inject arbitrary web script or HTML via the filename of an attached file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phorum | Phorum | 5.0.14 (including) | 5.0.14 (including) |