Description
Chamilo 1.11.x up to 1.11.20 allows users with admin privilege account to insert XSS in the course categories' definition.
Remediation
References
Related Vulnerabilities
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.6.2.5)
WordPress Plugin WordPress Download Manager Remote Code Execution (2.7.4)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-4583)
WordPress Improper Input Validation Vulnerability (CVE-2008-2392)