Description
Cross Site Scripting vulnerability found in Chamilo Lms v.1.11.18 allows a local attacker to execute arbitrary code via the skype and linedin_url parameters.
Remediation
References
Related Vulnerabilities
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-9788)
WordPress Plugin Calendar Event Multi View Multiple Vulnerabilities (1.1.4)
WordPress Plugin YOP Poll Cross-Site Scripting (6.1.1)
WordPress Plugin Conditional Payments for WooCommerce Cross-Site Request Forgery (2.3.1)
WordPress Plugin SagePay Server Gateway for WooCommerce Cross-Site Scripting (1.0.8)