Cross-site scripting (XSS) vulnerability in im.php in IMessenger for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via a message.Referenceshttp://archives.neohapsis.com/archives/vuln-dev/2001-q4/0851.htmlhttp://archives.neohapsis.com/archives/vuln-dev/2001-q4/0848.html