CVE-2005-4136
Cross-site scripting (XSS) vulnerability in login.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via the customerEmailAddress parameter.
Date published : 2005-12-09
http://www.securityfocus.com/bid/15766
http://www.securityfocus.com/archive/1/418851/100/0/threaded