Description
GibbonEdu Gibbon version 25.0.0 allows HTML Injection via an IFRAME element to the Messager component.
Remediation
References
Related Vulnerabilities
Apache HTTP Server Cryptographic Issues Vulnerability (CVE-2009-3555)
WordPress Plugin Mailster-Email Newsletter for WordPress Cross-Site Scripting (2.4.5.1)
WordPress Plugin OPS Old Post Spinner 'ops_file' Parameter Local File Include (2.2.1)
Moodle Improper Privilege Management Vulnerability (CVE-2017-7489)