Lucene search

K
osvGoogleOSV:CVE-2021-43421
HistoryApr 07, 2022 - 5:15 p.m.

CVE-2021-43421

2022-04-0717:15:08
Google
osv.dev
4
cve-2021-43421
studio-42 elfinder
file upload
remote code execution
security vulnerability

AI Score

9.6

Confidence

High

EPSS

0.066

Percentile

93.8%

A File Upload vulnerability exists in Studio-42 elFinder 2.0.4 to 2.1.59 via connector.minimal.php, which allows a remote malicious user to upload arbitrary files and execute PHP code.

AI Score

9.6

Confidence

High

EPSS

0.066

Percentile

93.8%