PT-2026-23382 · Lambertgroup · Lambertgroup - Allinone - Banner With Thumbnails

João Pedro S Alcântara

+1

·

Published

2026-03-05

·

Updated

2026-03-05

·

CVE-2026-28108

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions LambertGroup LambertGroup - AllInOne - Banner with Thumbnails versions through 3.8
Description The software contains a Reflected Cross-site Scripting issue due to Improper Neutralization of Input During Web Page Generation. The issue affects the processing of web page generation, potentially allowing attackers to inject malicious scripts. The vulnerable component is LambertGroup - AllInOne - Banner with Thumbnails.
Recommendations Versions prior to and including 3.8 should be updated.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-28108

Affected Products

Lambertgroup - Allinone - Banner With Thumbnails