Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog 1.0 allows remote attackers to inject arbitrary web script or HTML via the yr parameter in a bmonth action.
- http://packetstormsecurity.org/0912-exploits/ezblog-xssxsrf.txt
No PoCs found on GitHub currently.