CVE-2021-44159
EUVD-2021-3100920.12.2021, 03:15
4MOSAn GCB Doctor’s file upload function has improper user privilege control. A remote attacker can upload arbitrary files including webshell files without authentication and execute arbitrary code in order to perform arbitrary system operations or deny of service attack.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| 4mosan | gcb_doctor | 𝑥 < 2021-09-16 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration