A user can supply malicious HTML and JavaScript code that will be executed in the client browser
- http://packetstormsecurity.com/files/173038/Symantec-SiteMinder-WebAgent-12.52-Cross-Site-Scripting.html
No PoCs found on GitHub currently.