Description
chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin/jcapture/applet.php if an attacker passes a message hex2bin in the cookie.
Remediation
References
Related Vulnerabilities
Elgg Exposure of Private Personal Information to an Unauthorized Actor Vulnerability (CVE-2021-3980)
WordPress Plugin Gallery for Social Photo Unspecified Vulnerability (1.0.0.25)
MySQL Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2016-6664)