???summary
software: phpArcadeScript
vendors website: http://www.phparcadescript.com/
versions: <= 2.0
class: remote
status: unpatched
exploit: available
solution: not available
discovered by: retard and jim
risk level: medium
??? description
due to phpArcadeScript excessive use of global variables attackers
can very easily inject xss into various portions of the application
??? credit
author(s): retard and jim
email: retard (at) 30gigs (dot) com [email concealed]
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.