CVE-2022-44449 Information

Description

Stored cross-site scripting vulnerability in Zenphoto versions prior to 1.6 allows remote a remote authenticated attacker with an administrative privilege to inject an arbitrary script.

Reference

https://github.com/zenphoto/zenphoto https://jvn.jp/en/jp/JVN06093462/index.html https://www.zenphoto.org/

Share on: