"value":"An issue was found in funadmin 5.0.2. The selectfiles method in \\backend\\controller\\sys\\Attachh.php directly stores the passed parameters and values into the param parameter without filtering, resulting in Cross Site Scripting (XSS)."
"value":"Se encontr\u00f3 un problema en funadmin 5.0.2. El m\u00e9todo selectfiles en \\backend\\controller\\sys\\Attachh.php almacena directamente los par\u00e1metros y valores pasados en el par\u00e1metro param sin filtrar, lo que genera un ataque de Cross Site Scripting (XSS)."