Stored XSS in ZrLog 2.0.3 via Crafted File Upload Pathname

Stored XSS in ZrLog 2.0.3 via Crafted File Upload Pathname

CVE-2018-17421 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

An issue was discovered in ZrLog 2.0.3. There is stored XSS in the file upload area via a crafted attached/file/ pathname.

Learn more about our Web Application Penetration Testing UK.