CVE-2022-25574
EUVD-2022-3023625.03.2022, 16:15
A stored cross-site scripting (XSS) vulnerability in the upload function of /admin/show.php allows attackers to execute arbitrary web scripts or HTML via a crafted image file.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| douco | douphp | 1.6:20220216 |
𝑥
= Vulnerable software versions