Cross-site scripting (XSS) vulnerability in modules.php in PHP-Nuke INP allows remote attackers to inject arbitrary web script or HTML via the query parameter.
https://exchange.xforce.ibmcloud.com/vulnerabilities/28062
http://www.securityfocus.com/archive/1/441490/100/0/threaded