Multiple cross-site scripting (XSS) vulnerabilities in Adiscon LogAnalyzer before 3.6.6 allow remote attackers to inject arbitrary web script or HTML via the hostname in (1) index.php or (2) detail.php.
https://exchange.xforce.ibmcloud.com/vulnerabilities/95677
http://loganalyzer.adiscon.com/downloads/loganalyzer-3-6-6-v3-stable