A Server Side Template Injection (SSTI) vulnerability in Pentest-Collaboration-Framework v1.0.8 allows an authenticated remote attacker to execute arbitrary code through /project/PROJECTNAME/reports/.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-05-11T14:11:24
Updated: 2024-08-04T03:38:49.526Z
Reserved: 2021-10-18T00:00:00
Link: CVE-2021-42651
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-05-11T15:15:08.547
Modified: 2022-05-19T13:58:10.923
Link: CVE-2021-42651
Redhat
No data.