Cross-site scripting (XSS) vulnerability in manas tungare Site Membership Script before 8 March, 2006 allows remote attackers to inject arbitrary web script or HTML via the Error parameter in (1) login.asp and (2) default.asp.
https://exchange.xforce.ibmcloud.com/vulnerabilities/25109
http://www.vupen.com/english/advisories/2006/0884
http://www.securityfocus.com/bid/17045