Description
A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Configure categories" field under the "Categorise Lists" module.
Remediation
References
Related Vulnerabilities
Apache Tomcat Resource Management Errors Vulnerability (CVE-2012-4534)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3231)
XWiki Improper Handling of Insufficient Privileges Vulnerability (CVE-2024-21648)
MySQL CVE-2015-4792 Vulnerability (CVE-2015-4792)
WordPress Plugin WP Support Plus Responsive Ticket System Multiple Vulnerabilities (4.1)