Unknown · Wallpaper Script · CVE-2013-7274
**Name of the Vulnerable Software and Affected Versions**
Wallpaper Script version 3.5.0082
**Description**
A cross-site scripting (XSS) issue allows remote authenticated users to inject arbitrary web script or HTML via the `title` field in a wallpaper file upload. This could potentially lead to unauthorized actions on the affected system.
**Recommendations**
For version 3.5.0082, avoid using the `title` field in wallpaper file uploads until a fix is available. As a temporary workaround, consider restricting access to the wallpaper file upload feature to minimize the risk of exploitation.