CVE-2026-48535 | GFI Archiver up to 15.12 Call Home proxy server configuration CallHomeSettingsWizard.aspx CallHomeSettingsWizard.SaveAllConfigSettings proxy server address cross site scripting

SecurityVulns

A vulnerability categorized as problematic has been discovered in GFI Archiver up to 15.12. The affected element is the function CallHomeSettingsWizard.SaveAllConfigSettings of the file /Archiver/CallHomeSettingsWizard.aspx of the component Call Home proxy server configuration. The manipulation of the argument proxy server address results in cross site scripting.

This vulnerability is known as CVE-2026-48535. It is possible to launch the attack remotely. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More