CVE-2015-6809 | BEdita up to 3.5.x saveConfig data[description] cross site scripting (Issue 623 / EDB-38051)
A vulnerability was found in BEdita up to 3.5.x. It has been classified as problematic. This affects an unknown part of the file index.php/admin/saveConfig. The manipulation of the argument data[description] leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2015-6809. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.