Cross-site scripting (XSS) vulnerability in the com_poll component in Joomla! before 1.5 RC4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
http://www.securityfocus.com/bid/28111
http://www.mandriva.com/security/advisories?name=MDVSA-2008:060
http://www.joomla.org/content/view/4335/116/
http://securitytracker.com/id?1019145