Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-68767
HistoryAug 18, 2021 - 12:00 a.m.

Simple Image Gallery Web App Access Control Error Vulnerability

2021-08-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
web-based application
multiple users
image storage
access control error
unrestricted file upload
web shell
unauthorized access
server hosting

EPSS

0.004

Percentile

74.6%

Simple Image Gallery Web App is a web-based application that can be managed by multiple users. Users can store their images in this Web application.An access control error vulnerability exists in Simple Image Gallery Web App, which stems from an unrestricted file upload of Simple Image Gallery Web App to upload a Web shell and execute it. An attacker could exploit this vulnerability to gain unauthorized access to the server hosting the web application.

EPSS

0.004

Percentile

74.6%

Related for CNVD-2021-68767