Cross-site scripting (XSS) vulnerability in mwhois.php in Matt Wilson Matt's Whois (MWhois) allows remote attackers to inject arbitrary web script or HTML via the domain parameter.Referenceshttp://www.packetstormsecurity.org/0802-exploits/mattswhois-xss.txthttp://www.securityfocus.com/bid/27974http://secunia.com/advisories/29093