Description
TCExam before 14.1.2 has XSS via an ff_ or xl_ field.
Remediation
References
Related Vulnerabilities
WordPress Plugin DZS Video Gallery Multiple Cross-Site Scripting Vulnerabilities (All)
MySQL CVE-2017-3463 Vulnerability (CVE-2017-3463)
WordPress Plugin Wow Viral Signups SQL Injection (2.1)
WordPress Plugin User Avatar TimThumb Arbitrary File Upload (1.3.7)
PostgreSQL Improper Certificate Validation Vulnerability (CVE-2012-0867)