Lucene search

K
cvelistMitreCVELIST:CVE-2021-26804
HistoryMay 04, 2021 - 4:49 p.m.

CVE-2021-26804

2021-05-0416:49:02
mitre
www.cve.org
4
insecure permissions
centreon web
remote attackers
validation bypass
file upload

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

39.8%

Insecure Permissions in Centreon Web versions 19.10.18, 20.04.8, and 20.10.2 allows remote attackers to bypass validation by changing any file extension to β€œ.gif”, then uploading it in the β€œAdministration/ Parameters/ Images” section of the application.

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

39.8%

Related for CVELIST:CVE-2021-26804