Description
A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Send test" field under the "Start or continue campaign" module.
Remediation
References
Related Vulnerabilities
Apache Tomcat Other Vulnerability (CVE-2002-0935)
Oracle Database Server CVE-2007-2118 Vulnerability (CVE-2007-2118)
WordPress Plugin Smart Marketing SMS and Newsletters Forms Cross-Site Scripting (1.1.1)
Oracle JRE CVE-2024-21145 Vulnerability (CVE-2024-21145)
CKEditor Inclusion of Functionality from Untrusted Control Sphere Vulnerability (CVE-2021-26272)