Cross-site scripting (XSS) vulnerability in Greymatter allows remote attackers to inject arbitrary web script or HTML via a post comment, which is recorded in a log file but not properly handled when the administrator uses View Control Panel Log to read the log file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Greymatter_forum | Greymatter | * | * |