← Back to CVE List

CVE-2021-26628

Published: 2022-04-26T19:15Z
Last Modified: 2024-11-21T05:56Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Insufficient script validation of the admin page enables XSS, which causes unauthorized users to steal admin privileges. When uploading file in a specific menu, the verification of the files is insufficient. It allows remote attackers to upload arbitrary files disguising them as image files. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt