Lucene search

K
cvelistMitreCVELIST:CVE-2021-41595
HistoryOct 04, 2021 - 4:46 p.m.

CVE-2021-41595

2021-10-0416:46:08
mitre
www.cve.org
6
suitecrm
information disclosure
directory traversal
step3 import functionality

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

44.5%

SuiteCRM before 7.10.33 and 7.11.22 allows information disclosure via Directory Traversal. An attacker can partially include arbitrary files via the file_name parameter of the Step3 import functionality.

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

44.5%

Related for CVELIST:CVE-2021-41595