Description
Cross-site scripting (XSS) vulnerability in usersettings.php in e107 2.0.0 allows remote attackers to inject arbitrary web script or HTML via the "Real Name" value.
Remediation
References
Related Vulnerabilities
WordPress Plugin Gallery-Image and Video Gallery with Thumbnails SQL Injection (1.2.0)
Grafana Missing Authentication for Critical Function Vulnerability (CVE-2022-28660)
WordPress Plugin Top 10-Popular posts for WordPress Multiple Vulnerabilities (3.2.4)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-1476)