Description
Cross-site scripting (XSS) vulnerability in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to inject arbitrary web script or HTML via the idnumber field to cohort/edit.php.
Remediation
References
Related Vulnerabilities
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2165)
Apache Tomcat Improper Input Validation Vulnerability (CVE-2011-2526)
WordPress Plugin Simple Download Monitor Cross-Site Scripting (3.5.3)
Grafana Cleartext Storage of Sensitive Information Vulnerability (CVE-2022-26148)
WordPress Plugin Ultimate Maps by Supsystic Cross-Site Scripting (1.2.4)