Description
Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code via plugins/ExtendedFileManager/backend.php.
Remediation
References
Related Vulnerabilities
Perl Integer Overflow or Wraparound Vulnerability (CVE-2020-10878)
WordPress Plugin JS Job Manager Unspecified Vulnerability (1.0.9)
Undertow Uncontrolled Resource Consumption Vulnerability (CVE-2022-2053)
Oracle JRE CVE-2014-2398 Vulnerability (CVE-2014-2398)
WordPress Plugin NextGEN Gallery-WordPress Gallery Arbitrary File Upload (1.9.12)