Adiscon LogAnalyzer before 4.1.7 contains a cross-site scripting vulnerability in the ‘referer’ parameter of the login.php file.
View the template here CVE-2018-19877.yaml
References:
https://loganalyzer.adiscon.com/news/loganalyzer-v4-1-7-v4-stable-released/