PT-2026-20932 · 10Web · 10Web Photo Gallery

Tabulra

·

Publicado

2026-02-19

·

Atualizado

2026-02-19

·

CVE-2026-27360

CVSS v3.1

5.9

Média

VetorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions 10Web Photo Gallery versions through 1.8.37
Description A flaw exists in 10Web Photo Gallery that allows for Stored Cross-site Scripting (XSS). This issue arises from improper neutralization of input during web page generation. Successful exploitation could allow an attacker to inject malicious scripts into web pages viewed by other users.
Recommendations Update 10Web Photo Gallery to a version later than 1.8.37.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-27360

Produtos afetados

10Web Photo Gallery