CVE-2005-3494
Cross-site scripting (XSS) vulnerability in Ar-blog 5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a blog comment.
Date published : 2005-11-03
http://www.securityfocus.com/bid/15201
http://lists.grok.org.uk/pipermail/full-disclosure/2005-October/038133.html
