Description
phpList before 3.5.4 allows XSS via /lists/admin/user.php and /lists/admin/users.php.
Remediation
References
Related Vulnerabilities
SharePoint CVE-2024-43466 Vulnerability (CVE-2024-43466)
WordPress Plugin iThemes Security (formerly Better WP Security) Cross-Site Scripting (3.2.4)
XOOPS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-12138)
Drupal Core 9.0.0 Remote Code Execution (9.0.0)
WordPress Plugin Gallery Master-Responsive Photo Galleries & Albums Cross-Site Scripting (1.0.22)