Description
LimeSurvey before v3.17.14 allows reflected XSS for escalating privileges from a low-privileged account to, for example, SuperAdmin. This occurs in application/core/Survey_Common_Action.php,
Remediation
References
Related Vulnerabilities
Joomla Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2023-23755)
WordPress Plugin FormBuilder Multiple Vulnerabilities (1.05)
WordPress 'post.php' Cross-Site Scripting Vulnerability (1.5)
Internet Information Services Improper Input Validation Vulnerability (CVE-2000-0258)