CVE-2017-12139
EUVD-2017-372302.08.2017, 05:29
XOOPS Core 2.5.8 has stored XSS in imagemanager.php because of missing MIME type validation in htdocs/class/uploader.php.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| xoops | xoops | 2.5.8 |
𝑥
= Vulnerable software versions