Description
Cross-site scripting (XSS) vulnerability in Serendipity before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the serendipity[entry_id] parameter in an "edit" admin action to serendipity_admin.php.
Remediation
References
Related Vulnerabilities
phpMyFAQ Improper Access Control Vulnerability (CVE-2023-2429)
Joomla CVE-2022-27911 Vulnerability (CVE-2022-27911)
WordPress Plugin ZoomSounds-WordPress Wave Audio Player with Playlist Directory Traversal (6.45)
MySQL CVE-2015-4769 Vulnerability (CVE-2015-4769)
Roundcube Multiple Buffer Overflow Vulnerabilities (CVE-2015-2181)