CVE-2021-32054
14.05.2021, 21:15
Firely/Incendi Spark before 1.5.5-r4 lacks Content-Disposition headers in certain situations, which may cause crafted files to be delivered to clients such that they are rendered directly in a victim's web browser.Enginsight
Vendor | Product | Version |
---|---|---|
fire.ly | spark | 𝑥 ≤ 1.5.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References