Cross-site scripting (XSS) vulnerability in Alkacon OpenCms before 6.2.2 allows remote authenticated users to inject arbitrary web script or HTML via the message body. This vulnerability is addressed in the following product release:
Alkacon, OpenCms, 6.2.2
Publication date: Tue, 01 Aug 2006 03:04:00 +0000