Cross-site scripting (XSS) vulnerability in subscribe.php in MWNewsletter 1.0.0b allows remote attackers to inject arbitrary web script or HTML via the user_name parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Mwnewsletter | Manic_web | * | 1.0.0b (including) |