Sutra’s Airkiosk is susceptible to a cross site scripting vulnerability due to using an old formlib.pl.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/60525/airkiosk-xss.txt
Source: https://packetstormsecurity.com/files/60525/airkiosk-xss.txt.html