Cross-site scripting (XSS) vulnerability in Splatt Forum allows remote attackers to insert arbitrary HTML and web script via the post icon (image_subject) field.Referenceshttp://marc.info/?l=bugtraq&m=105830019209609&w=2http://members.fortunecity.it/lethalman2002/bugs/splatt.html