Threat Intel

v0.1

← CVEs

CVE-2021-47783

MED 5.4
Published
2026-01-16
Last Modified
2026-02-09
Affected Apps
12
Affected Devices
25
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.
References 4