Zenario 9.7.61188 allows authenticated admin users to upload PDF files containing malicious code into the target system. If the PDF file is accessed through the website, it can trigger a Cross Site Scripting (XSS) attack.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| tribalsystems/zenario(Packagist) | 0 | N/A | N/A |
CVSS Metrics