Description
Chamilo 1.11.x up to 1.11.20 allows users with an admin privilege account to insert XSS in the languages management section.
Remediation
References
Related Vulnerabilities
WordPress Plugin Advanced Access Manager Cross-Site Scripting (6.7.9)
WordPress Plugin Church Admin Arbitrary File Upload (4.4.6)
Serendipity Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-5476)
Oracle Database Server CVE-2008-1821 Vulnerability (CVE-2008-1821)
WordPress Plugin Slideshow Pro 'upload.php' Arbitrary File Upload (2.1)