Description
Chamilo 1.11.x up to 1.11.20 allows users with admin privilege account to insert XSS in the careers & promotions management section.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Visitor Statistics (Real Time Traffic) SQL Injection (5.7)
WordPress Plugin Video Metabox Cross-Site Scripting (1.1)
WordPress Plugin Copify Cross-Site Request Forgery (1.3.0)
Joomla! Core Directory Traversal (2.5.0 - 3.9.20)
WordPress Plugin WP Private Content Plus Cross-Site Request Forgery (3.1)