The 'sReferencia', 'sDescripcion', 'txtCodigo' and 'txtDescripcion' parameters, in the frmGestionStock.aspx and frmEditServicio.aspx files in TCMAN GIM v8.0.1, could allow an attacker to perform persistent XSS attacks.
| Software | From | Fixed in |
|---|---|---|
| tcman / gim | 8.0.1 | 8.0.1.x |