Description
Multiple cross-site scripting (XSS) vulnerabilities in the Install Tool in TYPO3 4.2.x before 4.2.16, 4.3.x before 4.3.9, and 4.4.x before 4.4.5 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Remediation
References
Related Vulnerabilities
MediaWiki Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-1648)
Drupal Core 8.x.x Information Disclosure (8.0.0 - 8.7.14)
WordPress Plugin Duplicator-WordPress Migration Arbitrary File Disclosure (0.3.0)
WordPress Plugin iPages Flipbook For WordPress Cross-Site Scripting (1.4.2)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-2157)