Description
Cross-site scripting (XSS) vulnerability in popuphelp.php in ATutor 2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the h parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Shopping Cart & eCommerce Store Cross-Site Request Forgery (5.1.0)
MongoDb Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2021-32036)
Oracle Application Server CVE-2008-7235 Vulnerability (CVE-2008-7235)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2022-45149)