VYPR
Unrated severityOSV Advisory· Published Jul 6, 2018· Updated Sep 16, 2024

CVE-2018-13409

CVE-2018-13409

Description

An issue was discovered in Jirafeau before 3.4.1. The "search file by hash" form is affected by reflected XSS that could allow, by targeting an administrator, stealing a session and gaining administrative privileges.

Affected products

2
  • Mojo42/JirafeauOSV2 versions
    1.0, 3.2.0, 3.2.1, …+ 1 more
    • (no CPE)range: 1.0, 3.2.0, 3.2.1, …
    • (no CPE)range: <3.4.1

Patches

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.