source: https://www.securityfocus.com/bid/8388/info
A cross-site scripting vulnerability has been reported in the index.php script of PHPOutSourcing Zorum. Because of this, an attacker may be able to execute HTML and script code in the browsers of target users in the security context of the site hosting the vulnerable script.
http://www.example.com/pathofzorum/index.php?method=<script>alert('test')
</script>