Lucene search

K
cvelistMitreCVELIST:CVE-2021-28294
HistoryMar 16, 2021 - 7:54 p.m.

CVE-2021-28294

2021-03-1619:54:20
mitre
www.cve.org
2
online ordering system
arbitrary file upload
remote code execution
cve-2021-28294

AI Score

10

Confidence

High

EPSS

0.02

Percentile

89.0%

Online Ordering System 1.0 is vulnerable to arbitrary file upload through /onlineordering/GPST/store/initiateorder.php, which may lead to remote code execution (RCE).

AI Score

10

Confidence

High

EPSS

0.02

Percentile

89.0%

Related for CVELIST:CVE-2021-28294