Description
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin ALO EasyMail Newsletter Cross-Site Scripting (2.8.1)
SharePoint CVE-2021-41344 Vulnerability (CVE-2021-41344)
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-5084)
Drupal CVE-2017-6919 Vulnerability (CVE-2017-6919)
WordPress Plugin ACF Frontend display Arbitrary File Upload (2.0.5)