FMS developed by Otsuka Information Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.Referenceshttps://www.twcert.org.tw/tw/cp-132-10520-03f29-1.htmlhttps://www.twcert.org.tw/en/cp-139-10521-abdc1-2.html