Description
osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of newsletters.
Remediation
References
Related Vulnerabilities
PHP Out-of-bounds Read Vulnerability (CVE-2017-11147)
WordPress Plugin Login Security Solution Multiple Unspecified Vulnerabilities (0.50.0)
Plone CMS Resource Management Errors Vulnerability (CVE-2012-5506)
PHP Other Vulnerability (CVE-2015-6836)
IBM RTC Improper Restriction of XML External Entity Reference Vulnerability (CVE-2016-0219)