CVE-2002-2340

Phorum - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in read.php in Phorum 3.3.2a allows remote attackers to inject arbitrary web script or HTML via (1) the t parameter or (2) the body of an email response.

Scores

EPSS 0.0029
EPSS Percentile 51.7%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

phorum/phorum

Timeline

Published Dec 31, 2002
Tracked Since Feb 18, 2026