Cross-site scripting (XSS) vulnerability in index.php in singapore 0.9.7 allows remote attackers to inject arbitrary web script or HTML via the image parameter.Referenceshttp://downloads.securityfocus.com/vulnerabilities/exploits/singapore-0.9.7-xss.txthttp://www.osvdb.org/25706http://www.securityfocus.com/archive/1/433250/100/0/threadedhttps://exchange.xforce.ibmcloud.com/vulnerabilities/26352http://securityreason.com/securityalert/854http://securitytracker.com/id?1016055http://www.sgal.org/files/download/20060512-xss-patch.ziphttp://www.securityfocus.com/bid/17874