e107 Other Vulnerability - CVE-2004-2040
Multiple cross-site scripting (XSS) vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary web script or HTML via the (1) LAN_407 parameter to clock_menu.php (2) quotemail article to a friendquot field (3) quotsubmit newsquot field or (4) avmsg parameter to usersettings.php.