index.jsp in TranzWare e-Commerce Payment Gateway (TWEC PG) before 3.1.27.5 had a Stored cross-site scripting (XSS) vulnerabilityReferenceshttps://gist.github.com/kukuxumushi/7436994ef395573023b79652e104a2a0