The Thread-IT Message board is vulnerable to cross site scripting injection via the Topic Title, Name and Message fields.