Multiple cross-site scripting (XSS) vulnerabilities in php ireport 1.0 allow remote attackers to inject arbitrary web script or HTML via the message parameter to (1) messages_viewer.php, (2) home.php, or (3) history.php.
CPE | Name | Operator | Version |
---|---|---|---|
php_ireport | eq | 1.0 |