Description
Cross-site scripting (XSS) vulnerability in admin/comments.php in Dotclear before 2.8.2 allows remote attackers to inject arbitrary web script or HTML via the author name in a comment.
Remediation
References
Related Vulnerabilities
Moodle Improper Authentication Vulnerability (CVE-2011-4590)
MySQL CVE-2021-35610 Vulnerability (CVE-2021-35610)
Twisted Web HTTP Server Improper Certificate Validation Vulnerability (CVE-2014-7143)
Oracle JRE CVE-2013-0437 Vulnerability (CVE-2013-0437)
WordPress Plugin BuddyPress Multiple SQL Injection Vulnerabilities (1.7.1)