VYPR
Medium severity6.1NVD Advisory· Published Dec 4, 2018· Updated Jun 17, 2026

CVE-2018-12305

CVE-2018-12305

Description

Cross-site scripting in File Explorer in ASUSTOR ADM version 3.1.1 allows attackers to execute JavaScript by uploading SVG images with embedded JavaScript.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.