The 'common.php' script contained in Phorum is prone to cross-site scripting attacks due to insufficient sanitization of input parameters. As a result of this deficiency, it is possible for a remote attacker to create a malicious link containing script code that may be executed in the browser of the web user that visits the link.
The 'common.php' script contained in Phorum is prone to cross-site scripting attacks due to insufficient sanitization of input parameters. As a result of this deficiency, it is possible for a remote attacker to create a malicious link containing script code that may be executed in the browser of the web user that visits the link.