Description
Chamilo 1.11.x up to 1.11.20 allows users with admin privilege account to insert XSS in the careers & promotions management section.
Remediation
References
Related Vulnerabilities
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.14)
WordPress Plugin Maps Widget for Google Maps-Google Maps Builder Open Redirect (4.0)
WordPress Plugin Media Mirror Cross-Site Scripting (1.0.6)
PHP Integer Overflow or Wraparound Vulnerability (CVE-2016-5094)
WordPress Plugin Starbox-the Author Box for Humans Cross-Site Scripting (3.0.8)