CVE-2012-2642 - Cathartic Panels
Description
Cross-site scripting (XSS) vulnerability in the MT4i plugin 3.1 beta 4 and earlier for Movable Type allows remote attackers to inject arbitrary web script or HTML via unspecified vectors a different vulnerability than CVE-2012-2644.
Reference
http://www.hazama.nu/pukiwiki/index.php?MT4i%2F3.1 http://jvndb.jvn.jp/jvndb/JVNDB-2012-000067 http://jvn.jp/en/jp/JVN80835745/index.html