Ampache is a web based audio/video streaming application and file manager. Ampache has multiple reflective XSS vulnerabilities,this means that all forms in the Ampache that use `rule` as a variable are not secure. For example, when querying a song, when querying a podcast, we need to use `$rule` variable. This vulnerability is fixed in 6.3.1
History

Wed, 05 Feb 2025 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Ampache
Ampache ampache
CPEs cpe:2.3:a:ampache:ampache:*:*:*:*:*:*:*:*
Vendors & Products Ampache
Ampache ampache

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2024-08-13T14:11:34.057Z

Reserved: 2024-03-11T22:45:07.685Z

Link: CVE-2024-28852

cve-icon Vulnrichment

Updated: 2024-08-02T00:56:58.143Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-27T14:15:10.340

Modified: 2025-02-05T21:20:47.810

Link: CVE-2024-28852

cve-icon Redhat

No data.