Beveiligingsadvies

CVE-2024-28852

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-27 13:18:10
Laatst bijgewerkt 2024-08-13 14:11:34
Toegewezen door GitHub_M
CVSS-score 6.1
Status PUBLISHED

Beschrijving

Ampache is a web based audio/video streaming application and file manager. Ampache has multiple reflective XSS vulnerabilities,this means that all forms in the Ampache that use `rule` as a variable are not secure. For example, when querying a song, when querying a podcast, we need to use `$rule` variable. This vulnerability is fixed in 6.3.1