CVE-2005-0863
MEDIUM 4.3EPSS 1.7%
Cross-site scripting (XSS) vulnerability in PHPOpenChat v3.x allows remote attackers to inject arbitrary web script or HTML via (1) the chatter parameter to regulars.php or (2) the chatter, chatter1, chatter2, chatter3, or chatter4 parameters to register.php.
- CVSS v2.0
- 4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N - EPSS
- 1.70% chance of exploitation in the next 30 days, 76th percentile
- Published
- 2005-03-24
- Updated
- 2024-08-07