Cross-site scripting (XSS) vulnerability in CafeLog b2 Weblog Tool allows remote attackers to insert arbitrary HTML or script via the GPC variable.Referenceshttp://archives.neohapsis.com/archives/vulnwatch/2002-q3/0071.htmlhttp://online.securityfocus.com/archive/1/287228http://www.iss.net/security_center/static/9835.phphttp://www.securityfocus.com/bid/5455