phpBB — CWE-79

All FrameworksphpBBCWE-79

1 CVEs categorized as CWE-79 — Cross-site Scripting (XSS) in phpBB.

CVE-2023-5917LOW2023
A vulnerability, which was classified as problematic, has been found in phpBB up to 3.3.10. This issue affects the function main of the file phpBB/includes/acp/acp_icons.php of the component Smiley Pack Handler. The manipulation of the argument pak leads to cross site scripting. The attack may be in…