Lexiglot through 2014-11-20 allows XSS (Reflected) via the username, or XSS (Stored) via the admin.php?page=config install_name, intro_message, or new_file_content parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
piwigo lexiglot |