CVE-2021-25971
20.10.2021, 12:15
In Camaleon CMS, versions 2.0.1 to 2.6.0 are vulnerable to an Uncaught Exception. The app's media upload feature crashes permanently when an attacker with a low privileged access uploads a specially crafted .svg fileEnginsight
Vendor | Product | Version |
---|---|---|
tuzitio | camaleon_cms | 2.0.1 ≤ 𝑥 ≤ 2.6.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References