Description
Collabtive 3.1 allows XSS via the manageuser.php?action=profile id parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin BSK PDF Manager Multiple Cross-Site Scripting Vulnerabilities (1.3)
WordPress Plugin iThemes Security (formerly Better WP Security) Information Disclosure (5.1.1)
WordPress Plugin Lana Email Logger Cross-Site Scripting (1.0.2)
WordPress Plugin Facebook Like Box Unspecified Vulnerability (1.0.17)
Opencart Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-13067)