Mandriva Linux Security Advisory – A cross-site scripting (XSS) vulnerability was found in AWStats that allowed remote attackers to inject arbitrary web script or HTML via the query_string. The updated packages have been patched to prevent this issue.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/70263/MDVSA-2008-203.txt
Source: https://packetstormsecurity.com/files/70263/Mandriva-Linux-Security-Advisory-2008-203.html

