Description
Multiple cross-site scripting (XSS) vulnerabilities in Moodle before 1.6.2 might allow remote attackers to inject arbitrary web script or HTML via (1) the choose parameter in files/index.php and (2) the sub parameter in doc/index.php.
Remediation
References
Related Vulnerabilities
WordPress Plugin Alpine PhotoTile for Instagram Cross-Site Scripting (1.2.7.7)
MySQL CVE-2022-21336 Vulnerability (CVE-2022-21336)
PHP Double Free Vulnerability (CVE-2016-5768)
WordPress Plugin Sharebar Multiple Vulnerabilities (1.2.5)
WordPress Plugin Olevmedia Shortcodes Multiple Cross-Site Scripting Vulnerabilities (1.1.9)