Description
Insufficient output sanitization in TCExam 14.2.2 allows a remote, authenticated attacker to conduct persistent cross-site scripting (XSS) attacks by creating a crafted group.
Remediation
References
Related Vulnerabilities
WordPress Plugin Stop User Enumeration User Enumeration (1.2.4)
MySQL CVE-2019-2795 Vulnerability (CVE-2019-2795)
WordPress Plugin Calendar Cross-Site Request Forgery (1.3.2)
WordPress Plugin Elementor Website Builder Security Bypass (3.0.13)
phpMyAdmin Improper Authentication Vulnerability (CVE-2010-4481)