Description
Chamilo 1.11.14 allows stored XSS via main/install/index.php and main/install/ajax.php through the port parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP-PostRatings '[ratings]' Shortcode SQL Injection (1.61)
WebLogic CVE-2024-20927 Vulnerability (CVE-2024-20927)
Jenkins Incorrect Authorization Vulnerability (CVE-2021-21609)
PHP Other Vulnerability (CVE-2015-4599)
WordPress Plugin Bookly #1 WordPress Booking Plugin (Lite Version) Cross-Site Scripting (14.4)