Description
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Simple Shopping Cart Cross-Site Scripting (4.6.1)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5095)
WordPress Plugin GA Backend Tracking Cross-Site Scripting (1.2)
WordPress Plugin Restaurant Menu-Food Ordering System-Table Reservation Security Bypass (2.3.0)
SugarCRM Improper Input Validation Vulnerability (CVE-2011-0745)