Security Advisory

CVE-2019-16178

5.4
MEDIUM

Vulnerability Description

A stored cross-site scripting (XSS) vulnerability was found in Limesurvey before 3.17.14 that allows authenticated users with correct permissions to inject arbitrary web script or HTML via titles of admin box buttons on the home page.
Published Date September 9, 2019
Official Source NIST NVD Advisory