Cross-site scripting (XSS) vulnerability in the core in Phorum before 5.1.18 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.Referenceshttp://www.vupen.com/english/advisories/2007/0410http://osvdb.org/34727http://www.phorum.org/phorum5/read.php?12%2C119757https://exchange.xforce.ibmcloud.com/vulnerabilities/44201