PT-2026-31558 · Unknown · Simple It Discussion Forum
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Simple IT Discussion Forum version 1.0
Description
A flaw exists in the processing of the
/edit-category.php file within Simple IT Discussion Forum 1.0. Manipulation of the Category argument can lead to cross site scripting. The attack can be launched remotely and an exploit has been published.Recommendations
For Simple IT Discussion Forum version 1.0, carefully sanitize the
Category argument in the /edit-category.php file to prevent cross site scripting.Exploit
Fix
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Simple It Discussion Forum