Логотип exploitDog
bind:CVE-2020-28071
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-28071

Количество 2

Количество 2

nvd логотип

CVE-2020-28071

около 5 лет назад

SourceCodester Alumni Management System 1.0 is affected by cross-site Scripting (XSS) in /admin/gallery.php. After the admin authentication an attacker can upload an image in the gallery using a XSS payload in the description textarea called 'about' and reach a stored XSS.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-qgxh-9fmh-3q95

больше 3 лет назад

SourceCodester Alumni Management System 1.0 is affected by cross-site Scripting (XSS) in /admin/gallery.php. After the admin authentication an attacker can upload an image in the gallery using a XSS payload in the description textarea called 'about' and reach a stored XSS.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-28071

SourceCodester Alumni Management System 1.0 is affected by cross-site Scripting (XSS) in /admin/gallery.php. After the admin authentication an attacker can upload an image in the gallery using a XSS payload in the description textarea called 'about' and reach a stored XSS.

CVSS3: 4.8
0%
Низкий
около 5 лет назад
github логотип
GHSA-qgxh-9fmh-3q95

SourceCodester Alumni Management System 1.0 is affected by cross-site Scripting (XSS) in /admin/gallery.php. After the admin authentication an attacker can upload an image in the gallery using a XSS payload in the description textarea called 'about' and reach a stored XSS.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу