userSpice
- <= 4.3.24
A cross-site scripting (XSS) vulnerability has been identified in userSpice version 4.3.24. This issue allows attackers to inject malicious scripts through the X-Forwarded-For HTTP header. By sending crafted requests to the backup.php endpoint, attackers can include XSS payloads in the X-Forwarded-For header. These payloads are executed when administrators access the audit log page.
Exploitation of this vulnerability allows for cross-site scripting, where injected scripts are executed in the context of the user's browser.
To reproduce this vulnerability, send a request to the backup.php endpoint with an X-Forwarded-For header containing a script payload. When an administrator views the audit log page, the injected script will execute.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.