Description
osCommerce 2.3.4.1 has XSS vulnerability via the authenticated user entering the XSS payload into the title section of newsletters.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Email Template Designer-WP HTML Mail HTML Injection (2.9.0.3)
WordPress Plugin IP Blacklist Cloud Arbitrary File Disclosure (3.42)
MySQL CVE-2023-21878 Vulnerability (CVE-2023-21878)
WordPress 'press-this.php' Multiple Cross-Site Scripting Vulnerabilities (2.0 - 2.5.1)
Oracle Database Server CVE-2007-2112 Vulnerability (CVE-2007-2112)