4.3
CVSSv2

CVE-2021-26628

Published: 26/04/2022 Updated: 06/05/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Insufficient script validation of the admin page enables XSS, which causes unauthorized users to steal admin privileges. When uploading file in a specific menu, the verification of the files is insufficient. It allows remote malicious users to upload arbitrary files disguising them as image files.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

maxb maxboard