"value":"Cross-Site Scripting (XSS) vulnerability in PayPal, Credit Card and Debit Card Payment affecting version 1.0. An attacker could create a specially crafted URL and send it to a victim to obtain details of their session cookie via the\u00a0'q', 'arrival', 'departure' and 'accomodation' parameters\u00a0in '/index.php'."
"value":"Vulnerabilidad de Cross-Site Scripting (XSS) en PayPal, Credit Card and Debit Card Payment que afecta a la versi\u00f3n 1.0. Un atacante podr\u00eda crear una URL especialmente manipulada y enviarla a una v\u00edctima para obtener detalles de su cookie de sesi\u00f3n a trav\u00e9s de los par\u00e1metros 'q', 'llegada', 'salida' y 'alojamiento' en '/index.php'."