CVE-2012-4989
Cross-site scripting (XSS) vulnerability in admin/plugin-index.php in OpenX 2.8.10 before revision 81823 allows remote attackers to inject arbitrary web script or HTML via the parent parameter in an info action.
Date published : 2012-10-22
http://www.securityfocus.com/bid/55860
http://archives.neohapsis.com/archives/bugtraq/2012-10/0065.html