An easily remedied Web site loophole may be leaving banks and other companies that do business online <A HREF="http://news.zdnet.com/2100-1009_22-5616419.html?tag=zdnn.alert">more susceptible to phishing attacks,</A> according to Netcraft. Online criminals are increasingly using cross-site scripting flaws to inject their own code into legitimate Web page URLs, the network security services company said in a note posted on its site Monday. With these sites, the attackers can try to dupe unsuspecting consumers into falling for phishing scams.