Description
The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in external Wiki method for listing pages. A remote attacker can send a specially crafted request to the affected application and execute limited SQL commands within the application database.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Google Maps Cross-Site Scripting (7.10.41)
Magento Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-28566)
Resin Application Server Improper Input Validation Vulnerability (CVE-2012-2965)
WordPress Plugin WP-DownloadManager Cross-Site Request Forgery (1.60)