CVE-2021-23673
Cross-site Scripting (XSS)
This affects all versions of package pekeupload. If an attacker induces a user to upload a file whose name contains javascript code, the javascript code will be executed.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N/E:P
Productos afectados
n/a · pekeupload¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →