CVE-2021-47783

Phpwcms 1.9.30 contains a file upload vulnerability that allows authenticated attackers to upload malicious SVG files with embedded JavaScript. Attackers can upload crafted SVG payloads through the multiple file upload feature to potentially execute cross-site scripting attacks on the platform.
Configurations

No configuration.

History

No history.

Information

Published : 2026-01-16 00:16

Updated : 2026-01-16 22:16


NVD link : CVE-2021-47783

Mitre link : CVE-2021-47783

CVE.ORG link : CVE-2021-47783


JSON object : View

Products Affected

No product.

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type