Cross-site scripting (XSS) vulnerability in login.php in Game-Panel 2.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the message parameter, possibly requiring a URL encoded value.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Game-panel | Game-panel | 2.6 (including) | 2.6 (including) |
Game-panel | Game-panel | 2.6.1 (including) | 2.6.1 (including) |