Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-12156 - Vulnerability Database

Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-12156

Medium
Reference: CVE-2017-12156
Title: Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Moodle 3.x has XSS in the contact form on the quotnon-respondentsquot page in non-anonymous feedback.