Description
Cross-site Scripting (XSS) in EasyXDM before 2.4.18 allows remote attackers to inject arbitrary web script or html via the easyxdm.swf file.
Remediation
References
Related Vulnerabilities
OpenSSL Inefficient Regular Expression Complexity Vulnerability (CVE-2023-3446)
WordPress Plugin White Label CMS PHP Object Injection (2.4)
WordPress Plugin Captcha by BestWebSoft Multiple Cross-Site Scripting Vulnerabilities (4.1.5)
WordPress Plugin Events Made Easy Arbitrary File Upload (2.1.1)
WordPress Plugin WordPress WP-Advanced-Search SQL Injection (3.3.5)