Looking for the vulnerability index of Invicti's legacy products?
FCKeditor spellchecker.php cross site scripting vulnerability - Vulnerability Database

FCKeditor spellchecker.php cross site scripting vulnerability

Description

Cross site scripting (XSS) vulnerability in the print_textinputs_var function in editor/dialog/fck_spellerpages/spellerpages/server-scripts/spellchecker.php in FCKeditor 2.6.7 and earlier allows remote attackers to inject arbitrary web script or HTML via textinputs array parameters.

Remediation

Upgrade to the latest version of FCKeditor.

References

Related Vulnerabilities