Cross-site scripting (XSS) vulnerability in Alkacon OpenCms before 6.2.2 allows remote authenticated users to inject arbitrary web script or HTML via the message body.
- http://o0o.nu/~meder/OpenCMS_multiple_vulnerabilities.txt
- http://securityreason.com/securityalert/1302
No PoCs found on GitHub currently.