Описание
phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php.
phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2024-41358
- https://github.com/phpipam/phpipam/issues/4148
- https://github.com/phpipam/phpipam/commit/3986ac1acfbf47ddd4fe05cd158aaf2cacafe36b
- https://github.com/phpipam/phpipam/commit/b131fb99c9ada95b38e4cb2749ac599e42fad3d9
- https://github.com/MarkLee131/awesome-web-pocs/blob/main/CVE-2024-41358.md
Связанные уязвимости
CVSS3: 6.1
nvd
больше 1 года назад
phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php.
CVSS3: 6.1
debian
больше 1 года назад
phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\ ...