Description
Insufficient output sanitization in TCExam 14.2.2 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks via the self-registration feature.
Remediation
References
Related Vulnerabilities
PHP undefined Safe_Mode_Include_Dir safemode bypass vulnerability
WordPress Plugin EMC2 Custom Help Videos Cross-Site Scripting (1.2)
ownCloud Improper Privilege Management Vulnerability (CVE-2020-36251)
WordPress Plugin FunCaptcha-Anti-Spam CAPTCHA Cross-Site Request Forgery (0.3.2)
WordPress Plugin Tags Cloud Manager Cross-Site Scripting (1.0.0)