Description
Cross Site Scripting vulnerability in Xoops CMS v.2.5.10 allows a remote attacker to execute arbitrary code via the category name field of the image manager function.
Remediation
References
Related Vulnerabilities
WordPress Plugin Verve Meta Boxes TimThumb Arbitrary File Upload (1.2.8)
WordPress 6.4.x Remote Code Execution (6.4 - 6.4.1)
WordPress Plugin WP e-Commerce Predictive Search Cross-Site Scripting (1.1.1)
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.21)
WordPress Plugin Slimstat Analytics Cross-Site Scripting (4.1.5.2)