PT-2026-102452 · Coolbeans1212 · Mateishomepage-Website
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
coolbeans1212 MateisHomePage-Website versions up to ea2a4226deeca27ab1fb9df0552ec76444547811
Description
A remote cross site scripting issue exists in the
users.php file. This occurs when the Search argument is manipulated, allowing an attacker to execute malicious scripts in the victim's browser.Recommendations
Apply patch 6406308df9771d2fd477b56dafe4878dd846df6e.
As a temporary mitigation, restrict access to the
users.php file or avoid using the Search argument until the patch is applied.Exploit
Fix
Code Injection
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mateishomepage-Website