Description
PHP-Fusion 9.03.60 allows XSS via the administration/site_links.php Add Site Link field.
Remediation
References
Related Vulnerabilities
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1999006)
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2183)
CakePHP Improper Input Validation Vulnerability (CVE-2016-4793)
WordPress Plugin 3D Slider Slice Box Multiple Cross-Site Scripting Vulnerabilities (1.0)
WordPress Plugin UpdraftPlus WordPress Backup Cross-Site Scripting (1.16.68)