Multiple cross-site scripting (XSS) vulnerabilities in Scott Metoyer Red Mombin 0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) index.php and (2) process_login.php.Referenceshttp://www.securityfocus.com/archive/1/447255/100/0/threadedhttp://www.armorize.com/advisory.php?Keyword=Armorize-ADV-2006-0002http://www.securityfocus.com/bid/20243http://securityreason.com/securityalert/1668https://exchange.xforce.ibmcloud.com/vulnerabilities/29241