This script is Copyright (C) 2005-2011 Tenable Network Security, Inc.
The remote web server contains a PHP application that is affected by a
cross-site scripting issue.
According to its banner, the remote host is running a version of
paNews that fails to sanitize input to the 'showpost' parameter of the
'comment.php' script before using it to generate dynamic web content.
By coercing an unsuspecting user into visiting a malicious website, an
attacker may be able to possibly steal credentials or execute
See also :
Unknown at this time.
Risk factor :
Medium / CVSS Base Score : 4.3
CVSS Temporal Score : 4.3
Public Exploit Available : true