CVE-2024-28147
Last modified
CVE-2024-28147 is a high-severity vulnerability rated 7.4/10 on the CVSS scale. An authenticated user can upload arbitrary files in the upload function for collection preview images. An attacker may upload an HTML file that includes malicious JavaScript code which will be executed if a user visits the direct URL of the collection preview image (Stored Cross Site Scripting). EPSS estimates a 0.83% chance of exploitation in the next 30 days.
Description
An authenticated user can upload arbitrary files in the upload function for collection preview images. An attacker may upload an HTML file that includes malicious JavaScript code which will be executed if a user visits the direct URL of the collection preview image (Stored Cross Site Scripting). It is also possible to upload SVG files that include nested XML entities. Those are parsed when a user visits the direct URL of the collection preview image, which may be utilized for a Denial of Service attack. This issue affects edu-sharing: <8.0.8-RC2, <8.1.4-RC0, <9.0.0-RC19.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:N/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2024-28147?
How severe is CVE-2024-28147?
How do I fix CVE-2024-28147?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-28141The web application is not protected against cross-site requ…6.3
- CVE-2024-28142Due to missing input sanitization, an attacker can perform c…4.7
- CVE-2024-28143The password change function at /cgi/admin.cgi does not requ…8.4
- CVE-2024-28144An attacker who can spoof the IP address and the User-Agent …5.5
- CVE-2024-28145An unauthenticated attacker can perform an SQL injection by …5.9
- CVE-2024-28146The application uses several hard-coded credentials to encry…8.4
- CVE-2024-28148An authenticated user could potentially access metadata for …4.3
- CVE-2024-28149Jenkins HTML Publisher Plugin 1.16 through 1.32 (both inclus…6.5
- CVE-2024-2815A vulnerability classified as critical has been found in Ten…9.8
- CVE-2024-28150Jenkins HTML Publisher Plugin 1.32 and earlier does not esca…4.7
- CVE-2024-28151Jenkins HTML Publisher Plugin 1.32 and earlier archives inva…4.3
- CVE-2024-28152In Jenkins Bitbucket Branch Source Plugin 866.vdea_7dcd3008e…6.3
Are you affected by CVE-2024-28147?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
