File Upload Vulnerability in Feehi CMS by Liufee
CVE-2021-36573

5.4MEDIUM

Key Information:

Vendor

Feehi

Status
Vendor
CVE Published:
15 December 2022

What is CVE-2021-36573?

Feehi CMS version 2.1.1 is susceptible to a file upload vulnerability that enables attackers to execute arbitrary code by uploading specially crafted images. This security flaw can be exploited to compromise the integrity of the application, making it essential for users to apply necessary patches and updates to safeguard their systems.

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.