mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 01:07:59 +02:00
752 B
752 B
CVE-2021-23407
Description
This affects the package elFinder.Net.Core from 0 and before 1.2.4. The user-controlled file name is not properly sanitized before it is used to create a file system path.
POC
Reference
- https://snyk.io/vuln/SNYK-DOTNET-ELFINDERNETCORE-1315152
- https://snyk.io/vuln/SNYK-DOTNET-ELFINDERNETCORE-1315152
Github
No PoCs found on GitHub currently.