CVE-2007-2686
Cross-site scripting (XSS) vulnerability in index.php in Jetbox CMS 2.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter in a sendpwd task.
Date published : 2007-05-22
http://www.securityfocus.com/bid/24095
http://www.securityfocus.com/archive/1/469233/100/0/threaded