Medium severity6.1NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026
CVE-2022-24435
CVE-2022-24435
Description
Cross-site scripting vulnerability in phpUploader v1.2 and earlier allows a remote unauthenticated attacker to inject an arbitrary script via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:phpuploader_project:phpuploader:*:*:*:*:*:*:*:*Range: <=1.2
- Dojin Club MICMNIS/phpUploaderv5Range: v1.2 and earlier
Patches
Vulnerability mechanics
References
2- github.com/shimosyan/phpUploader/releases/tag/v1.2.1nvdPatchThird Party Advisory
- jvn.jp/en/jp/JVN00095004/index.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.