Heap
02-07-09, 02:47
Cross-site scripting (XSS) vulnerability in index.php in Arcade Trade Script 1.0 beta allows remote attackers to inject arbitrary web script or HTML via the q parameter in a gamelist action.
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2289)
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2289)