Cross-site scripting (XSS) vulnerability in low.php in Fuzzylime Forum 1.0 allows remote attackers to inject arbitrary web script or HTML via the topic parameter. NOTE: this might be resultant from SQL injection.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/34840http://secunia.com/advisories/25653https://www.exploit-db.com/exploits/4062http://osvdb.org/36405