Description
Multiple cross-site scripting (XSS) vulnerabilities in the component outcomes_addProcess.php of Gibbon CMS v22.0.01 allow attackers to execute arbitrary web scripts or HTML via a crafted payload insterted into the name, category, description parameters.
Remediation
References
Related Vulnerabilities
WordPress Plugin Advanced Dynamic Pricing for WooCommerce Cross-Site Request Forgery (4.1.3)
WordPress Plugin PICA Photo Gallery 'imgname' Parameter Information Disclosure (1.0)
MediaWiki Other Vulnerability (CVE-2005-4031)
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-0246)
WordPress Plugin Magic Fields 2 Cross-Site Scripting (2.3.2.4)