CVE-2021-26628
26.04.2022, 19:15
Insufficient script validation of the admin page enables XSS, which causes unauthorized users to steal admin privileges. When uploading file in a specific menu, the verification of the files is insufficient. It allows remote attackers to upload arbitrary files disguising them as image files.
Vendor | Product | Version |
---|---|---|
maxb | maxboard | 𝑥 < 1.9.6.1 |
𝑥
= Vulnerable software versions