Cross-site scripting (XSS) vulnerability in DirectTopics 2.1 and 2.2 allows remote attackers to inject arbitrary web script via a javascript: URL in (1) a thread or (2) an IMG tag.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Directtopics | Directtopics | 2.1 (including) | 2.1 (including) |
Directtopics | Directtopics | 2.2 (including) | 2.2 (including) |