Accellion FTA 9_12_370 and earlier is affected by OS command execution via a crafted POST request to various admin endpoints. The fixed version is FTA_9_12_380 and later.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-02-16T20:16:42

Updated: 2021-02-16T20:16:42

Reserved: 2021-02-10T00:00:00


Link: CVE-2021-27104

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-02-16T21:15:13.280

Modified: 2021-02-17T18:52:07.410


Link: CVE-2021-27104

JSON object: View

cve-icon Redhat Information

No data.

CWE