Files
CVEs-PoC/2021/CVE-2021-39497.md
2025-09-29 21:09:30 +02:00

664 B

CVE-2021-39497

Description

eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject a url to trigger blind SSRF via the saveRemote() function.

POC

Reference

No PoCs from references.

Github