CVE-2007-2248 | Phorum 5.1.21 Settings admin.php smiley_id cross site scripting (EDB-29887 / BID-23616)
A vulnerability described as problematic has been identified in Phorum 5.1.21. The impacted element is an unknown function of the file admin.php of the component Settings Module. The manipulation of the argument smiley_id results in cross site scripting.
This vulnerability is cataloged as CVE-2007-2248. The attack may be launched remotely. Furthermore, there is an exploit available.
Upgrading the affected component is recommended.