BlogCMS through 2016-10-25 has XSS via a comment.
CVSS 2.0
Severity: MEDIUM
Problem Type: CWE-79,
Products Affected