Description
Osclass 3.7.4 has XSS via the query string to index.php, a different vulnerability than CVE-2014-6280.
Remediation
References
Related Vulnerabilities
Envoy Proxy Improper Encoding or Escaping of Output Vulnerability (CVE-2023-35941)
WordPress Plugin Posts in Page Local File Inclusion (1.2.4)
WordPress Plugin WordPress Landing Pages Unspecified Vulnerability (2.2.6)
Drupal Core 7.x Multiple Security Bypass Vulnerabilities (7.0 - 7.25)
JBoss Application Server Improper Privilege Management Vulnerability (CVE-2012-2312)