Files
CVEs-PoC/2021/CVE-2021-42787.md
T
2024-05-25 21:48:12 +02:00

889 B

CVE-2021-42787

Description

It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/agent/configuration" API. The affected endpoint does not have any input validation of the user's input that allows a malicious payload to be injected.

POC

Reference

No PoCs from references.

Github