Cross-site scripting (XSS) vulnerability in login.cfm in FuseTalk Forums 3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the windowed parameter.Referenceshttp://st2tea.blogspot.com/2012/01/fusetalk-forums-v32-cross-site.htmlhttp://secunia.com/advisories/40850http://www.securityfocus.com/bid/51227https://exchange.xforce.ibmcloud.com/vulnerabilities/72083http://www.securitytracker.com/id?1026483