CVE-2021-39496
07.09.2021, 20:15
Eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject malicious code into `filename` param to trigger Reflected XSS.
Vendor | Product | Version |
---|---|---|
eyoucms | eyoucms | 1.5.4 |
𝑥
= Vulnerable software versions