Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-47783

Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.3%
CVSS Severity
CVSS v3 Score 5.4
Products affected by CVE-2021-47783
  • Phpwcms » Phpwcms » Version: 1.9.30
    cpe:2.3:a:phpwcms:phpwcms:1.9.30


Contact Us

Shodan ® - All rights reserved