Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HTML and web script via search parameters.
http://www.mikx.de/index.php?p=6
http://www.kb.cert.org/vuls/id/716144
http://secunia.com/advisories/14367
http://lists.grok.org.uk/pipermail/full-disclosure/2004-December/030222.html