Description
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted test.
Remediation
References
Related Vulnerabilities
WordPress Plugin YITH WooCommerce Ajax Search Unspecified Vulnerability (1.2.7)
WordPress Plugin Anti-Malware Security and Brute-Force Firewall Cross-Site Scripting (4.15.49)
MySQL CVE-2018-3074 Vulnerability (CVE-2018-3074)
WordPress Plugin WORDPRESS VIDEO GALLERY Multiple Vulnerabilities (2.3.1)
WordPress Plugin Permalink Manager Lite SQL Injection (2.2.12)