CVE-2021-42675
14.06.2022, 17:15
Kreado Kreasfero 1.5 does not properly sanitize uploaded files to the media directory. One can upload a malicious PHP file and obtain remote code execution.Enginsight
| Vendor | Product | Version |
|---|---|---|
| kreado | kreasfero | 1.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration