Security Advisory

CVE-2017-12139

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-08-02 05:00:00
Last updated 2024-08-05 18:28:16
Assigner mitre
State PUBLISHED

Description

XOOPS Core 2.5.8 has stored XSS in imagemanager.php because of missing MIME type validation in htdocs/class/uploader.php.