An issue was discovered in Zoho ManageEngine Netflow Analyzer Professional 7.0.0.2. XSS exists in /netflow/jspui/userManagementForm.jsp via these GET parameters: authMeth, passWord, pwd1, and userName.
https://www.manageengine.com/products/netflow/?doc
https://www.exploit-db.com/exploits/46425/