Cross-site scripting (XSS) vulnerability in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier allows remote attackers to inject malicious web script via the person parameter.Referenceshttp://dev2dev.bea.com/resourcelibrary/advisoriesnotifications/SA_BEA03_36.00.jsphttp://www.securityfocus.com/bid/8938https://exchange.xforce.ibmcloud.com/vulnerabilities/13568http://marc.info/?l=bugtraq&m=106761926906781&w=2