Description
Chamilo 1.11.14 allows stored XSS via main/install/index.php and main/install/ajax.php through the port parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin LearnDash LMS Insecure Direct Object Reference (4.6.0)
Oracle JRE CVE-2013-1478 Vulnerability (CVE-2013-1478)
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8166)
Oracle Application Server CVE-2006-0289 Vulnerability (CVE-2006-0289)
WordPress Plugin PHP Analytics Arbitrary File Upload (1.0.0.2)