Description
phpMyFAQ is an open source FAQ web application. Prior to version 4.1.1, there is a stored XSS vulnerability via Regex Bypass in Filter::removeAttributes(). This issue has been patched in version 4.1.1.
Remediation
References
Related Vulnerabilities
silverstripeCMS Cryptographic Issues Vulnerability (CVE-2010-5079)
WordPress Plugin WP jPlayer Cross-Site Scripting (0.1)
PHP Improper Input Validation Vulnerability (CVE-2013-4636)
WordPress Plugin Poll, Survey, Form & Quiz Maker by OpinionStage Unspecified Vulnerability (15.0.0)
WordPress Plugin Another WordPress Classifieds Unspecified Vulnerability (1.8.9.4)