CVE-2021-38621

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/08/2021
Last modified:
12/07/2022

Description

The remove API in v1/controller/cloudStorage/alibabaCloud/remove/index.ts in netless Agora Flat Server before 2021-07-30 mishandles file ownership.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:netless:flat_server:*:*:*:*:*:node.js:*:* 2021-07-30 (excluding)