Vulnerabilities > PHP Nuke > League Module > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-11-12 | CVE-2008-5039 | Cross-Site Scripting vulnerability in PHP-Nuke League Module 2.4 Cross-site scripting (XSS) vulnerability in the League module for PHP-Nuke, possibly 2.4, allows remote attackers to inject arbitrary web script or HTML via the tid parameter in a team action to modules.php. | 4.3 |