phpMyFAQ 2.9.8 Cross Site Scripting

phpMyFAQ version 2.9.8 suffers from a persistent cross site scripting vulnerability where an attacker can embed malicious script code in the title of the faq.

Leave a Reply