Ampache is a web based audio/video streaming application and file manager. Ampache has multiple reflective XSS vulnerabilities,this means that all forms in the Ampache that use `rule` as a variable are not secure. For example, when querying a song, when querying a podcast, we need to use `$rule` variable. This vulnerability is fixed in 6.3.1
Metrics
Affected Vendors & Products
References
History
Wed, 05 Feb 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ampache
Ampache ampache |
|
CPEs | cpe:2.3:a:ampache:ampache:*:*:*:*:*:*:*:* | |
Vendors & Products |
Ampache
Ampache ampache |

Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-13T14:11:34.057Z
Reserved: 2024-03-11T22:45:07.685Z
Link: CVE-2024-28852

Updated: 2024-08-02T00:56:58.143Z

Status : Analyzed
Published: 2024-03-27T14:15:10.340
Modified: 2025-02-05T21:20:47.810
Link: CVE-2024-28852

No data.