Cross-site scripting (XSS) vulnerability in menu.php in Some Chess 1.5 rc1 allows remote attackers to inject arbitrary web script or HTML via the user parameter (New Name field).
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Some_chess | Astrodog_press | 1.5_rc1 (including) | 1.5_rc1 (including) |