phpMyFAQ Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-15728 - Vulnerability Database

phpMyFAQ Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-15728

Medium
Reference: CVE-2017-15728
Title: phpMyFAQ Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

In phpMyFAQ before 2.9.9 there is Stored Cross-site Scripting (XSS) via metaDescription or metaKeywords.