CVE-2006-3211
Cross-site scripting (XSS) vulnerability in sign.php in cjGuestbook 1.3 and earlier allows remote attackers to inject Javascript code via a javascript URI in an img bbcode tag in the comments parameter.
Date published : 2006-06-23
http://www.securityfocus.com/bid/18556
http://www.securityfocus.com/archive/1/438008/100/0/threaded