Description
Chamilo 1.9.4 has XSS due to improper validation of user-supplied input by the chat.php script.
Remediation
References
Related Vulnerabilities
WordPress Plugin Visitor Traffic Real Time Statistics Security Bypass (2.11)
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2107)
PHP Improper Input Validation Vulnerability (CVE-2007-4783)
WordPress Plugin Yet Another Photoblog Unspecified Vulnerability (1.10.6)
Dotclear Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2008-3232)