An improper input validation leading to arbitrary file creation was discovered in copy method of Nexacro platform. Remote attackers use copy method to execute arbitrary command after the file creation included malicious code.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: krcert
Published: 2021-11-30T18:39:25
Updated: 2024-08-03T20:26:25.500Z
Reserved: 2021-02-03T00:00:00
Link: CVE-2021-26612
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-11-30T19:15:08.873
Modified: 2024-11-21T05:56:35.303
Link: CVE-2021-26612
Redhat
No data.