CVE-2013-4940: Improper Neutralization of Input During Web Page Generation | Rapid7 Vulnerability Database