Cross-site scripting (XSS) vulnerability in the login/prompt component in Subex Nikira Fraud Management System allows remote attackers to inject arbitrary web script or HTML via the message parameter.Referenceshttp://secunia.com/advisories/38564http://www.packetstormsecurity.org/1002-exploits/nikara-xss.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/56393http://www.securityfocus.com/bid/38311