VYPR
Unrated severityNVD Advisory· Published Jan 1, 2015· Updated Jun 16, 2026

CVE-2011-5297

CVE-2011-5297

Description

Multiple cross-site scripting (XSS) vulnerabilities in TTChat 1.0.4 allow remote attackers to inject arbitrary web script or HTML via (1) the msg parameter to default.php or (2) the username parameter to chat_form.php.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.