Description
Chamilo 1.11.x up to 1.11.20 allows users with admin privilege account to insert XSS in the careers & promotions management section.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2013-5823 Vulnerability (CVE-2013-5823)
WordPress Plugin Product Slider for WooCommerce Cross-Site Scripting (2.6.3)
WordPress Plugin All-In-One Security (AIOS)-Security and Firewall Cross-Site Scripting (3.9.7)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-0245)