Files
CVEs-PoC/2021/CVE-2021-39458.md
2025-09-29 21:09:30 +02:00

758 B

CVE-2021-39458

Description

Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS user has to alternate the files of a vaild file backup. This leads of leaking the database credentials in the environment variables.

POC

Reference

Github