CVE-2021-41646
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Online Reviewer System 1.0 by uploading a maliciously crafted PHP file that bypasses the image upload filters..
- Affected products
- Sourcecodester Online Reviewer System
- Janobe Online Reviewer System
- = 1.0
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 7.2% (94th percentile)
- Weakness
- CWE-434
- NVD status
- Analyzed
- Published
- 2021-10-29
CVE-2021-41646 at NVD
1 known exploit for CVE-2021-41646
Proof-of-concept code and exploit modules indexed by Sploitus