info
discussion
exploit
solution
references
Microsoft Internet Explorer Multimedia Page Cross-Site Scripting Vulnerability
The following webpage has a proof-of-concept example:
http://www16.brinkster.com/liudieyu/viaSWFurl/viaSWFurl-MyPage.htm
Privacy Statement
Copyright 2010, SecurityFocus