Secunia Security Advisory – Avaya has acknowledged a vulnerability in various Avaya products, which potentially can be exploited to conduct cross-site scripting attacks.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/60176/sa27275.txt
Source: https://packetstormsecurity.com/files/60176/Secunia-Security-Advisory-27275.html