The remote web server is running a PHP application that is affected by a cross-site scripting vulnerability.
The remote web server is running MediaWiki. The application is prone to an arbitrary file-upload vulnerability because it fails to adequately validate files before uploading them to the vulnerable server. An attacker can exploit this issue to upload a chunk file through API.
Upgrade to MediaWiki version 1.20.6, 1.19.7, or higher.