Description
qdPM 9.1 suffers from Cross-site Scripting (XSS) via configuration?type=[XSS] parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin MP3-jPlayer Multiple Cross-Site Request Forgery Vulnerabilities (2.7.3)
Magento CVE-2019-8125 Vulnerability (CVE-2019-8125)
WordPress Plugin Mingle Forum 'edit_post_id' Parameter SQL Injection (1.0.31)
WordPress Other Vulnerability (CVE-2007-4165)
WebLogic Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2020-28491)