SourceBans before 2.0 contains a cross-site scripting vulnerability which allows remote attackers to inject arbitrary web script or HTML via the advSearch parameter to index.php.
id: CVE-2015-8349
info:
name: SourceBans <2.0 - Cross-Site Scripting
author: pikpikcu
severit
...