CVE-2010-1105
Cross-site scripting (XSS) vulnerability in cgi/index.php in AdvertisementManager 3.1.0 and 3.6 allows remote attackers to inject arbitrary web script or HTML via the usr parameter.
Date published : 2010-03-25
http://www.securityfocus.com/bid/40151
http://www.packetstormsecurity.com/1001-exploits/advertisemanager-xssrfitraversal.txt