CVE-2005-4727
Cross-site scripting (XSS) vulnerability in gbook.cgi in gBook before 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header field.
Date published : 2006-02-22
http://www.securityfocus.com/bid/14725
http://www.securityfocus.com/archive/1/425492/100/0/threaded