• caglararli@hotmail.com
  • 05386281520

CVE-2024-3766 | slowlyo OwlAdmin up to 3.5.7 Image File Upload /admin-api/upload_image file cross site scripting

Çağlar Arlı      -    6 Views

CVE-2024-3766 | slowlyo OwlAdmin up to 3.5.7 Image File Upload /admin-api/upload_image file cross site scripting

A vulnerability, which was classified as problematic, has been found in slowlyo OwlAdmin up to 3.5.7. Affected by this issue is some unknown functionality of the file /admin-api/upload_image of the component Image File Upload. The manipulation of the argument file leads to cross site scripting. This vulnerability is handled as CVE-2024-3766. The attack may be launched remotely. Furthermore, there is an exploit available.