CVE

Id
9630  
CVE No.
CVE-2004-1202  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in parser.php in phpCMS 1.2.1 and earlier, with non-stealth and debug modes enabled, allows remote attackers to inject arbitrary web script or HTML via the file parameter.  
Phase
Assigned (20041214)  
Votes
None (candidate not yet proposed)  
Comments