Description Multiple cross-site scripting (XSS) vulnerabilities in Concrete5 5.7.3.1. Remediation References CVE-2015-4721 Related Vulnerabilities WordPress Plugin Party Hall Booking Manager SQL Injection (1.1) Apache Tomcat version older than 4.1.37 Magento Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-1397) PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-3230) WordPress Plugin Music Store Cross-Site Scripting (1.0.41) Severity Medium Classification CVE-2015-4721 CWE-707 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities