Description
TCExam before 14.1.2 has XSS via an ff_ or xl_ field.
Remediation
References
Related Vulnerabilities
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-5487)
WordPress Plugin Membership Simplified Arbitrary File Download (1.58)
Oracle JRE CVE-2024-20932 Vulnerability (CVE-2024-20932)
WordPress CVE-2006-4028 Vulnerability (CVE-2006-4028)
WordPress Plugin Multi Feed Reader Multiple Vulnerabilities (2.2.4)