Логотип exploitDog
bind:CVE-2021-47783
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-47783

Количество 2

Количество 2

nvd логотип

CVE-2021-47783

24 дня назад

Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-j425-3jgm-m83r

24 дня назад

Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-47783

Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.

CVSS3: 5.4
0%
Низкий
24 дня назад
github логотип
GHSA-j425-3jgm-m83r

Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.

CVSS3: 5.4
0%
Низкий
24 дня назад

Уязвимостей на страницу