Cross-site scripting (XSS) vulnerability in index.php in eTicket 1.5.6-RC4 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.
- http://securityreason.com/securityalert/3601
No PoCs found on GitHub currently.