Description
chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin/jcapture/applet.php if an attacker passes a message hex2bin in the cookie.
Remediation
References
Related Vulnerabilities
XWiki Improper Encoding or Escaping of Output Vulnerability (CVE-2022-23620)
WordPress Plugin WP Photo Album Plus Cross-Site Scripting (6.1.2)
WordPress Plugin Location Weather Cross-Site Scripting (1.3.3)
WordPress Plugin Simple Business Directory with Maps PHP Object Injection (3.6.0)
MediaWiki Resource Management Errors Vulnerability (CVE-2015-6733)