Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ Reflected XSS when uploading an image in the product page

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š Reflected XSS when uploading an image in the product page


๐Ÿ’ก Newskategorie: Sicherheitslรผcken
๐Ÿ”— Quelle: portal.patchman.co

If a target sends a corrupted file, it leads to a reflected XSS.

This vulnerability affects the following application versions:

  • PrestaShop 1.7.0.0
  • PrestaShop 1.7.0.0 beta1
  • PrestaShop 1.7.0.0 beta2
  • PrestaShop 1.7.0.0 beta3
  • PrestaShop 1.7.0.0 RC0
  • PrestaShop 1.7.0.0 RC1
  • PrestaShop 1.7.0.0 RC2
  • PrestaShop 1.7.0.0 RC3
  • PrestaShop 1.7.0.1
  • PrestaShop 1.7.0.2
  • PrestaShop 1.7.0.3
  • PrestaShop 1.7.0.4
  • PrestaShop 1.7.0.5
  • PrestaShop 1.7.0.6
  • PrestaShop 1.7.1.0
  • PrestaShop 1.7.1.0 beta1
  • PrestaShop 1.7.1.1
  • PrestaShop 1.7.1.2
  • PrestaShop 1.7.2.0
  • PrestaShop 1.7.2.0 RC 1
  • PrestaShop 1.7.2.1
  • PrestaShop 1.7.2.2
  • PrestaShop 1.7.2.3
  • PrestaShop 1.7.2.4
  • PrestaShop 1.7.2.5
  • PrestaShop 1.7.3.0
  • PrestaShop 1.7.3.0 beta 1
  • PrestaShop 1.7.3.0 RC 1
  • PrestaShop 1.7.3.1
  • PrestaShop 1.7.3.2
  • PrestaShop 1.7.3.3
  • PrestaShop 1.7.3.4
  • PrestaShop 1.7.4.0
  • PrestaShop 1.7.4.0 beta 1
  • PrestaShop 1.7.4.1
  • PrestaShop 1.7.4.2
  • PrestaShop 1.7.4.3
  • PrestaShop 1.7.4.4
  • PrestaShop 1.7.5.0
  • PrestaShop 1.7.5.0 beta 1
  • PrestaShop 1.7.5.0 RC 1
  • PrestaShop 1.7.5.1
  • PrestaShop 1.7.5.2
  • PrestaShop 1.7.6.0
  • PrestaShop 1.7.6.0 beta 1
  • PrestaShop 1.7.6.0 RC 1
  • PrestaShop 1.7.6.0 RC 2
  • PrestaShop 1.7.6.1
  • PrestaShop 1.7.6.2
  • PrestaShop 1.7.6.3
  • PrestaShop 1.7.6.4
  • PrestaShop 1.7.6.4 1
  • PrestaShop 1.7.6.5
  • PrestaShop 1.7.6.5 1
...



๐Ÿ“Œ Reflected XSS when uploading an image in the product page


๐Ÿ“ˆ 60.56 Punkte

๐Ÿ“Œ CVE-2024-24135 | SourceCodester Product Inventory with Export to Excel 1.0 Add Product Product Name/Product Code cross site scripting


๐Ÿ“ˆ 36.16 Punkte

๐Ÿ“Œ Plone up to 4.3.2 Image Tag Image.py OFS.Image Reflected cross site scriting


๐Ÿ“ˆ 31.54 Punkte

๐Ÿ“Œ XSS-LOADER - XSS Payload Generator / XSS Scanner / XSS Dork Finder


๐Ÿ“ˆ 29.8 Punkte

๐Ÿ“Œ WooCommerce Product Vendors Plugin <= 2.0.27 - Unauthenticated Reflected XSS


๐Ÿ“ˆ 26.82 Punkte

๐Ÿ“Œ 360 Product Rotation <= 1.4.7 - Reflected XSS


๐Ÿ“ˆ 26.82 Punkte

๐Ÿ“Œ WooCommerce Product Feed for Google, Facebook, eBay and Many More < 3.1.15 - Authenticated Reflected XSS


๐Ÿ“ˆ 26.82 Punkte

๐Ÿ“Œ Four npm packages found uploading user details on a GitHub page


๐Ÿ“ˆ 26.67 Punkte

๐Ÿ“Œ Mail.ru: xss while uploading a file


๐Ÿ“ˆ 26.53 Punkte

๐Ÿ“Œ Cross-site scripting (XSS) vulnerability when uploading very large files


๐Ÿ“ˆ 26.53 Punkte

๐Ÿ“Œ Visma Bug Bounty Program: Stored XSS when uploading files to an invoice


๐Ÿ“ˆ 26.53 Punkte

๐Ÿ“Œ [Fixed] Http Error Uploading Image to WordPress


๐Ÿ“ˆ 26.15 Punkte

๐Ÿ“Œ [APPSEC-1876] Cross-site scripting (XSS) in Admin Bundle Product Bundle Items Tab through Product SKU


๐Ÿ“ˆ 25.53 Punkte

๐Ÿ“Œ Sanitize product id list in "product-function" to prevent XSS


๐Ÿ“ˆ 25.53 Punkte

๐Ÿ“Œ Elementor Page Builder < 2.8.5 - Authenticated Reflected XSS


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ Reflected XSS on the network settings page


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ Topcoder: Reflected XSS on error page on https://apps.topcoder.com/wiki/plugins/socialbookmarking/updatebookmark.action


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ Reflected XSS on the network settings page


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ Topcoder: Reflected XSS on https://apps.topcoder.com/wiki/page/


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ U.S. Dept Of Defense: Reflected XSS on โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ page


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ TD Bank: Reflected XSS on Admin Login Page


๐Ÿ“ˆ 25.37 Punkte

๐Ÿ“Œ U.S. Dept Of Defense: Self XSS + CSRF Leads to Reflected XSS in https://โ–ˆโ–ˆโ–ˆโ–ˆ/


๐Ÿ“ˆ 25.23 Punkte

๐Ÿ“Œ U.S. Dept Of Defense: [XSS] Reflected XSS via POST request


๐Ÿ“ˆ 25.23 Punkte

๐Ÿ“Œ On-device product image search: Call the product search backend


๐Ÿ“ˆ 25.15 Punkte

๐Ÿ“Œ [webapps] ChurchCRM v4.5.4 - Reflected XSS via Image (Authenticated)


๐Ÿ“ˆ 24.85 Punkte

๐Ÿ“Œ Escaping attribute label in single product page to prevent XSS


๐Ÿ“ˆ 24.08 Punkte

๐Ÿ“Œ CVE-2023-0399 | Image Over Image for WPBakery Page Builder Plugin up to 2.x on WordPress Shortcode Attribute cross site scripting


๐Ÿ“ˆ 21.73 Punkte

๐Ÿ“Œ Free Lossless Image Format 0.3 image/image-pnm.cpp image_load_pnm denial of service


๐Ÿ“ˆ 21.21 Punkte

๐Ÿ“Œ Free Lossless Image Format 0.3 LibPNG image/image-png.cpp memory corruption


๐Ÿ“ˆ 21.21 Punkte

๐Ÿ“Œ MiniMagick up to 4.9.3 lib/mini_magick/image.rb Image.open Image File privilege escalation


๐Ÿ“ˆ 21.21 Punkte

๐Ÿ“Œ Free Lossless Image Format 0.3 LibPNG image/image-png.cpp flif File memory corruption


๐Ÿ“ˆ 21.21 Punkte

๐Ÿ“Œ Free Lossless Image Format 0.3 LibPNG image/image-png.cpp flif File memory corruption


๐Ÿ“ˆ 21.21 Punkte

๐Ÿ“Œ Image Roll - my new simple and fast GTK image viewer with basic image manipulation tools. Written in Rust.


๐Ÿ“ˆ 21.21 Punkte

๐Ÿ“Œ Avoiding lock-in for your image pipeline with Nuxt Image and Netlify Image CDN


๐Ÿ“ˆ 21.21 Punkte











matomo