cve/2021/CVE-2021-42112.md
2024-06-18 02:51:15 +02:00

676 B

CVE-2021-42112

Description

The "File upload question" functionality in LimeSurvey 3.x-LTS through 3.27.18 allows XSS in assets/scripts/modaldialog.js and assets/scripts/uploader.js.

POC

Reference

Github

No PoCs found on GitHub currently.