Description
A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "List Description" field under the "Edit A List" module.
Remediation
References
Related Vulnerabilities
Apache 2.x version older than 2.0.55
Magento Insufficient Session Expiration Vulnerability (CVE-2021-21031)
Internet Information Services Other Vulnerability (CVE-2002-1908)
Python Out-of-bounds Read Vulnerability (CVE-2019-15903)
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Arbitrary File Upload (1.2.5)