CVE

Id
13151  
CVE No.
CVE-2005-1945  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the convert_highlite_words function in Invision Blog before 1.1.2 Final allows remote attackers to inject arbitrary web script or HTML via double hex encoded highlight data.  
Phase
Assigned (20050614)  
Votes
None (candidate not yet proposed)  
Comments