CVE-2021-27230

CVE-2021-27230

ExpressionEngine before 5.4.2 and 6.x before 6.0.3 allows PHP Code Injection by certain authenticated users who can leverage Translate::save() to write to an _lang.php file under the system/user/language directory.

Source: CVE-2021-27230

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다