Cross-site scripting (XSS) vulnerability in cgi/index.php in AdvertisementManager 3.1.0 and 3.6 allows remote attackers to inject arbitrary web script or HTML via the usr parameter.
- http://www.packetstormsecurity.com/1001-exploits/advertisemanager-xssrfitraversal.txt
No PoCs found on GitHub currently.