Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to cookies.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/70468http://jvndb.jvn.jp/jvndb/JVNDB-2011-000081http://jvn.jp/en/jp/JVN89764731/index.html