VulnAware.com

Bringing security awareness to the masses

CVE-2010-0938 (todoo_forum)

Cross-site scripting (XSS) vulnerability in todooforum.php in Todoo Forum 2.0 allows remote attackers to inject arbitrary web script or HTML via the id_forum parameter in a post action.

Comments are closed.