CVE-2021-42171

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
14/03/2022
Last modified:
24/05/2022

Description

Zenario CMS 9.0.54156 is vulnerable to File Upload. The web server can be compromised by uploading and executing a web-shell which can run commands, browse system files, browse local resources, attack other servers, and exploit the local vulnerabilities, and so forth.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tribalsystems:zenario:9.0.54156:*:*:*:*:*:*:*