Описание
A vulnerability was detected in SourceCodester Modern Image Gallery App 1.0. Affected by this vulnerability is an unknown functionality of the file upload.php. The manipulation of the argument filename results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
Ссылки
- ExploitIssue TrackingMitigationThird Party Advisory
- Permissions RequiredVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Product
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:remyandrade:modern_image_gallery_app:1.0:*:*:*:*:*:*:*
EPSS
Процентиль: 18%
0.00264
Низкий
4.3 Medium
CVSS3
6.1 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-79
CWE-79
Связанные уязвимости
CVSS3: 4.3
github
4 месяца назад
A vulnerability was detected in SourceCodester Modern Image Gallery App 1.0. Affected by this vulnerability is an unknown functionality of the file upload.php. The manipulation of the argument filename results in cross site scripting. The attack may be launched remotely. The exploit is now public and may be used.
EPSS
Процентиль: 18%
0.00264
Низкий
4.3 Medium
CVSS3
6.1 Medium
CVSS3
5 Medium
CVSS2
Дефекты
CWE-79
CWE-79