PHProxy is "a web HTTP (for now; FTP is not supprted yet) proxy programmed in PHP designed to bypass firewalls and other proxy restrictions through a web interface very similar to the popular CGIProxy".
A vulnerability in the PHProxy's handling of incoming user provided data allows an attacker to use the PHP script for a cross site scripting vulnerability.
Credit:
The information has been provided by Boshcash.
Vulnerable Systems:
* PHProxy version 0.3 and prior
There is exists an XSS vulnerability where a malicious user could inject any evil HTML tags or JavaScript into PHProxy's web page. The vulnerability can be exploited by putting arbitrary code in 'error' parameter of the PHProxy program.