Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving the query string that is not quoted when inserted into style and body tags, as demonstrated using a bgcol parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Imagevue | Imagevue | 0.16.1 (including) | 0.16.1 (including) |