Phorum is prone to HTML injection attacks. HTML and script code may be echoed back when an existing user is specified from the registration page. This could potentially permit a malicious attacker to cause the execution of hostile HTML and script code in the web client of a user who visits a vulnerable site hosting Phorum.
Phorum is prone to HTML injection attacks. HTML and script code may be echoed back when an existing user is specified from the registration page. This could potentially permit a malicious attacker to cause the execution of hostile HTML and script code in the web client of a user who visits a vulnerable site hosting Phorum.