Security Advisory

CVE-2024-28852

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-03-27 13:18:10
Last updated 2024-08-13 14:11:34
Assigner GitHub_M
State PUBLISHED

Description

Ampache is a web based audio/video streaming application and file manager. Ampache has multiple reflective XSS vulnerabilities,this means that all forms in the Ampache that use `rule` as a variable are not secure. For example, when querying a song, when querying a podcast, we need to use `$rule` variable. This vulnerability is fixed in 6.3.1