Cross-site scripting (XSS) vulnerability in register.php in TheWebForum (twf) 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the www parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Thewebforum | Thewebforum | * | 1.2.1 (including) |