VYPR
Medium severity6.1NVD Advisory· Published Mar 30, 2022· Updated Jun 17, 2026

CVE-2022-24131

CVE-2022-24131

Description

DouPHP v1.6 Release 20220121 is affected by Cross Site Scripting (XSS) through /admin/login.php in the background, which will lead to JavaScript code execution.

Affected products

4
  • Douco/Douphp2 versions
    cpe:2.3:a:douco:douphp:1.6:20220121:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:douco:douphp:1.6:20220121:*:*:*:*:*:*
    • (no CPE)range: 1.6 Release 20220121
  • DouPHP/DouPHP v1.6 Release 20220121description
  • DouPHP/DouPHPllm-fuzzy
    Range: 1.6 Release 20220121

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.