Description Multiple cross-site scripting (XSS) vulnerabilities in ATutor LMS version 2.2. Remediation References CVE-2015-6521 Related Vulnerabilities Nginx Improper Neutralization of Special Elements used in a Command ('Command Injection') Vulnerability (CVE-2014-3556) WordPress Plugin MailPoet Newsletters (Previous) Cross-Site Request Forgery (2.6.10) MySQL CVE-2020-14567 Vulnerability (CVE-2020-14567) Nexus Repository Manager Server-Side Request Forgery (SSRF) Vulnerability (CVE-2021-43293) MySQL CVE-2021-2169 Vulnerability (CVE-2021-2169) Severity Medium Classification CVE-2015-6521 CWE-707 CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N Tags Missing Update Known Vulnerabilities