Description
Osclass 3.7.4 has XSS via the query string to index.php, a different vulnerability than CVE-2014-6280.
Remediation
References
Related Vulnerabilities
WordPress Plugin DELUCKS SEO Unspecified Vulnerability (1.2.2)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-8656)
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery SQL Injection (1.5.30)
WordPress Plugin qTranslate X Multiple Cross-Site Scripting Vulnerabilities (3.4.6.8)