Description
A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Add a list" field under the "Import Emails" module.
Remediation
References
Related Vulnerabilities
Apache 2.2.14 mod_isapi Dangling Pointer
WordPress Plugin Notices Ticker Cross-Site Scripting (6.1)
WordPress Plugin Broken Link Checker PHAR Deserialization (1.11.16)
Lighttpd Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-4359)
WordPress Plugin Master Slider-Responsive Touch Slider Cross-Site Scripting (2.7.1)