Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving the query string that is not quoted when inserted into style and body tags, as demonstrated using a bgcol parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.1
EPSS Ranking 92.7%