CVE-2026-48535 | GFI Archiver up to 15.12 Call Home proxy server configuration CallHomeSettingsWizard.aspx CallHomeSettingsWizard.SaveAllConfigSettings proxy server address cross site scripting
A vulnerability categorized as problematic has been discovered in GFI Archiver up to 15.12. The affected element is the function CallHomeSettingsWizard.SaveAllConfigSettings of the file /Archiver/CallHomeSettingsWizard.aspx of the component Call Home proxy server configuration. The manipulation of the argument proxy server address results in cross site scripting.
This vulnerability is known as CVE-2026-48535. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More