CVE-2010-2040
Cross-site scripting (XSS) vulnerability in search.php in V-EVA Shopzilla Affiliate Script PHP allows remote attackers to inject arbitrary web script or HTML via the s parameter.
Date published : 2010-05-25
http://www.securityfocus.com/bid/40246
http://www.packetstormsecurity.org/1005-exploits/shopzillaas-xss.txt