CVE-2010-2514
Cross-site scripting (XSS) vulnerability in the JFaq (com_jfaq) component 1.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the question parameter in an add2 action to index.php.
Date published : 2010-06-28
http://www.securityfocus.com/bid/41029
http://packetstormsecurity.org/1006-exploits/joomlajfaq-sqlxss.txt