Description
Cross-site scripting (XSS) vulnerability in inc/PMF/Faq.php in phpMyFAQ through 2.9.8 allows remote attackers to inject arbitrary web script or HTML via the Questions field in an "Add New FAQ" action.
Remediation
References
Related Vulnerabilities
WordPress Plugin Browser and Operating System Finder Cross-Site Request Forgery (1.1)
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-3530)
Oracle Database Server CVE-2009-2001 Vulnerability (CVE-2009-2001)
SharePoint Resource Management Errors Vulnerability (CVE-2015-0064)