Vulnerabilities > 4Homepages

DATE CVE VULNERABILITY TITLE RISK
2021-03-22 CVE-2021-27308 Cross-site Scripting vulnerability in 4Homepages 4Images 1.8
A cross-site scripting (XSS) vulnerability in the admin login panel in 4images version 1.8 allows remote attackers to inject JavaScript via the "redirect" parameter.
network
low complexity
4homepages CWE-79
4.8
2021-01-26 CVE-2020-35853 Cross-site Scripting vulnerability in 4Homepages 4Images 1.7.11
4images Image Gallery Management System 1.7.11 is affected by cross-site scripting (XSS) in the Image URL.
network
low complexity
4homepages CWE-79
4.8