Cross-site scripting (XSS) vulnerability in menu.php in Some Chess 1.5 rc1 allows remote attackers to inject arbitrary web script or HTML via the user parameter (New Name field).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Some_chess | Astrodog_press | 1.5_rc1 (including) | 1.5_rc1 (including) |