CVE-2005-0274 - Nuptial Egg
Description
Multiple cross-site scripting (XSS) vulnerabilities in showgallery.php in PhotoPost before 4.86 allow remote attackers to inject arbitrary web script or HTML via the (1) cat (2) si (3) page or (4) ppuser parameters.
Reference
http://www.gulftech.org/?node=research&article_id=00063-01032005 http://www.securityfocus.com/bid/12156 http://secunia.com/advisories/13680/ http://marc.info/?l=bugtraq&m=110486165802196&w=2 https://exchange.xforce.ibmcloud.com/vulnerabilities/18744