CVE-2008-2973
MM Chat - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in chathead.php in MM Chat 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) sitename and (2) wmessage parameters.
Exploits (1)
Scores
EPSS
0.0313
EPSS Percentile
86.7%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
mm_chat/mm_chat
Timeline
Published
Jul 02, 2008
Tracked Since
Feb 18, 2026