Description
Multiple vulnerabilities in YUI and FlashCanvas embedded in SugarCRM Community Edition 6.5.26 could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack on a targeted system.
Remediation
References
Related Vulnerabilities
WordPress Plugin Sendit WP Newsletter SQL Injection (2.5.1)
WordPress Plugin Lightbox Multiple Vulnerabilities (1.6.6)
WordPress Plugin Per page add to head Cross-Site Request Forgery (1.4.3)
WordPress Plugin Responsive Slider-Image Slider-Slideshow for WordPress SQL Injection (2.8.6)
WordPress Plugin Our Team Showcase Cross-Site Request Forgery (1.2)