CVE-2007-6156
Multiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[0] and (2) sig[1] parameters.
Date published : 2007-11-28
http://www.securityfocus.com/bid/26596
http://sourceforge.net/project/shownotes.php?group_id=103348&release_id=555614