CVE-2021-3317
EUVD-2021-2664826.01.2021, 23:15
KLog Server through 2.4.1 allows authenticated command injection. async.php calls shell_exec() on the original value of the source parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| klogserver | klog_server | 𝑥 ≤ 2.4.1 |
𝑥
= Vulnerable software versions
References