Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the Elfinder plugin.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-10-07T10:18:09

Updated: 2021-10-08T17:06:12

Reserved: 2021-05-07T00:00:00


Link: CVE-2021-32172

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-10-07T11:15:07.340

Modified: 2021-10-15T15:31:20.987


Link: CVE-2021-32172

JSON object: View

cve-icon Redhat Information

No data.

CWE